summaryrefslogtreecommitdiff
path: root/modules/gallery/helpers/p.php
diff options
context:
space:
mode:
authorTim Almdal <tnalmdal@shaw.ca>2009-07-03 21:44:10 -0700
committerTim Almdal <tnalmdal@shaw.ca>2009-07-03 21:44:10 -0700
commit54ffea24196e8f5d88cf9d8607455f0f6aab305c (patch)
treefc0443ec5b8976d154134f667e21adb80cfea06d /modules/gallery/helpers/p.php
parenta633c134b754305eaa611c5d67af4ca7c79beafe (diff)
Split the clean method into two clean and purify. clean is a light weight
approach using html::specialchars and purify uses HTMLPurifier to intelligently cleanse the output fields. Use purifier for text and title fields where it is likely that a user would enter html to format their data.
Diffstat (limited to 'modules/gallery/helpers/p.php')
-rw-r--r--modules/gallery/helpers/p.php4
1 files changed, 4 insertions, 0 deletions
diff --git a/modules/gallery/helpers/p.php b/modules/gallery/helpers/p.php
index fe53102c..862c769b 100644
--- a/modules/gallery/helpers/p.php
+++ b/modules/gallery/helpers/p.php
@@ -20,6 +20,10 @@
class p_Core {
private static $_purifier = null;
static function clean($dirty_html) {
+ return html::specialchars($dirty_html);
+ }
+
+ static function purify($dirty_html) {
if (empty(self::$_purifier)) {
require_once(dirname(__file__) . "/../lib/HTMLPurifier/HTMLPurifier.auto.php");
$config = HTMLPurifier_Config::createDefault();