summaryrefslogtreecommitdiff
path: root/modules/gallery/views/permissions_browse.html.php
diff options
context:
space:
mode:
authorBharat Mediratta <bharat@menalto.com>2009-05-31 00:11:48 -0700
committerBharat Mediratta <bharat@menalto.com>2009-05-31 00:11:48 -0700
commit708f27f483d70660446ea2132b02cb7b39225f98 (patch)
treec1f6231ea024565be6c2a41ad092eea05b30d7fc /modules/gallery/views/permissions_browse.html.php
parentad81861c331f60ec8c19ea11e47e2826660fa142 (diff)
Run p::clean() on any variables that contain data entered by users.
Diffstat (limited to 'modules/gallery/views/permissions_browse.html.php')
-rw-r--r--modules/gallery/views/permissions_browse.html.php4
1 files changed, 2 insertions, 2 deletions
diff --git a/modules/gallery/views/permissions_browse.html.php b/modules/gallery/views/permissions_browse.html.php
index 749bee4f..5cd9cf82 100644
--- a/modules/gallery/views/permissions_browse.html.php
+++ b/modules/gallery/views/permissions_browse.html.php
@@ -35,14 +35,14 @@
<? foreach ($parents as $parent): ?>
<li>
<a href="javascript:show(<?= $parent->id ?>)">
- <?= $parent->title ?>
+ <?= p::clean($parent->title) ?>
</a>
<div class="form" id="edit-<?= $parent->id ?>"></div>
<ul>
<? endforeach ?>
<li>
<a href="javascript:show(<?= $item->id ?>)">
- <?= $item->title ?>
+ <?= p::clean($item->title) ?>
</a>
<div class="form" id="edit-<?= $item->id ?>">
<?= $form ?>