diff options
author | Bharat Mediratta <bharat@menalto.com> | 2009-05-31 00:11:48 -0700 |
---|---|---|
committer | Bharat Mediratta <bharat@menalto.com> | 2009-05-31 00:11:48 -0700 |
commit | 708f27f483d70660446ea2132b02cb7b39225f98 (patch) | |
tree | c1f6231ea024565be6c2a41ad092eea05b30d7fc /modules/gallery/views/admin_advanced_settings.html.php | |
parent | ad81861c331f60ec8c19ea11e47e2826660fa142 (diff) |
Run p::clean() on any variables that contain data entered by users.
Diffstat (limited to 'modules/gallery/views/admin_advanced_settings.html.php')
-rw-r--r-- | modules/gallery/views/admin_advanced_settings.html.php | 8 |
1 files changed, 4 insertions, 4 deletions
diff --git a/modules/gallery/views/admin_advanced_settings.html.php b/modules/gallery/views/admin_advanced_settings.html.php index 9f90d671..77aff050 100644 --- a/modules/gallery/views/admin_advanced_settings.html.php +++ b/modules/gallery/views/admin_advanced_settings.html.php @@ -20,12 +20,12 @@ <? if ($var->module_name == "gallery" && $var->name == "_cache") continue ?> <tr class="setting"> <td> <?= $var->module_name ?> </td> - <td> <?= $var->name ?> </td> + <td> <?= p::clean($var->name) ?> </td> <td> - <a href="<?= url::site("admin/advanced_settings/edit/$var->module_name/$var->name") ?>" + <a href="<?= url::site("admin/advanced_settings/edit/$var->module_name/" . p::clean($var->name)) ?>" class="gDialogLink" - title="<?= t("Edit %var (%module_name)", array("var" => $var->name, "module_name" => $var->module_name)) ?>"> - <?= $var->value ?> + title="<?= t("Edit %var (%module_name)", array("var" => p::clean($var->name), "module_name" => $var->module_name)) ?>"> + <?= p::clean($var->value) ?> </a> </td> </tr> |