summaryrefslogtreecommitdiff
path: root/modules/gallery/helpers/gallery_rss.php
diff options
context:
space:
mode:
authorTim Almdal <tnalmdal@shaw.ca>2009-07-04 08:17:12 -0700
committerTim Almdal <tnalmdal@shaw.ca>2009-07-04 08:17:12 -0700
commitd6648c0affd122407b7567442aa924e9138104e7 (patch)
tree015f10205d96618edcf210ad93c672a74956d979 /modules/gallery/helpers/gallery_rss.php
parent54ffea24196e8f5d88cf9d8607455f0f6aab305c (diff)
Fix for ticket #477. Use nl2br method when rendering comment::text and
item::description. In addition add p::clean or p::purify to places that xss cleaning had missed (i.e. rss feeds)
Diffstat (limited to 'modules/gallery/helpers/gallery_rss.php')
-rw-r--r--modules/gallery/helpers/gallery_rss.php4
1 files changed, 2 insertions, 2 deletions
diff --git a/modules/gallery/helpers/gallery_rss.php b/modules/gallery/helpers/gallery_rss.php
index 6e966bdb..7daf6170 100644
--- a/modules/gallery/helpers/gallery_rss.php
+++ b/modules/gallery/helpers/gallery_rss.php
@@ -52,9 +52,9 @@ class gallery_rss_Core {
->viewable()
->descendants($limit, $offset, "photo");
$feed->max_pages = ceil($item->viewable()->descendants_count("photo") / $limit);
- $feed->title = $item->title;
+ $feed->title = p::purify($item->title);
$feed->link = url::abs_site("albums/{$item->id}");
- $feed->description = $item->description;
+ $feed->description = nl2br(p::purify($item->description));
return $feed;
}