diff options
author | Andy Staudacher <andy.st@gmail.com> | 2009-08-31 21:51:57 -0700 |
---|---|---|
committer | Andy Staudacher <andy.st@gmail.com> | 2009-08-31 21:51:57 -0700 |
commit | 2bc73e2e36fefc3c1ee1b8e97e686c6729e58dcb (patch) | |
tree | c511db2684ea957572a1d27caf49a08963ef8484 /modules/gallery/views/l10n_client.html.php | |
parent | 8c3a2db3803ccaa3572f0bf061ca7faf62f13fca (diff) |
Fix XSS vectors in HTML attributes (mostly t() calls)
Diffstat (limited to 'modules/gallery/views/l10n_client.html.php')
-rw-r--r-- | modules/gallery/views/l10n_client.html.php | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/modules/gallery/views/l10n_client.html.php b/modules/gallery/views/l10n_client.html.php index c68a63c8..3a43f7d3 100644 --- a/modules/gallery/views/l10n_client.html.php +++ b/modules/gallery/views/l10n_client.html.php @@ -66,7 +66,7 @@ (<a href="http://www.unicode.org/cldr/data/charts/supplemental/language_plural_rules.html"><?= t("learn more about plural forms") ?></a>) <?= form::textarea("l10n-edit-plural-translation-other", "", ' rows="2"') ?> </div> - <input type="submit" name="l10n-edit-save" value="<?= t("Save translation") ?>"/> + <input type="submit" name="l10n-edit-save" value="<?= t("Save translation")->for_html_attr() ?>"/> <a href="javascript: Gallery.l10nClient.copySourceText()" class="gButtonLink ui-state-default ui-corner-all"><?= t("Copy source text") ?></a> </form> |