diff options
author | Tim Almdal <tnalmdal@shaw.ca> | 2009-07-03 21:44:10 -0700 |
---|---|---|
committer | Tim Almdal <tnalmdal@shaw.ca> | 2009-07-03 21:44:10 -0700 |
commit | 54ffea24196e8f5d88cf9d8607455f0f6aab305c (patch) | |
tree | fc0443ec5b8976d154134f667e21adb80cfea06d /modules/info | |
parent | a633c134b754305eaa611c5d67af4ca7c79beafe (diff) |
Split the clean method into two clean and purify. clean is a light weight
approach using html::specialchars and purify uses HTMLPurifier to intelligently
cleanse the output fields. Use purifier for text and title fields where it is
likely that a user would enter html to format their data.
Diffstat (limited to 'modules/info')
-rw-r--r-- | modules/info/views/info_block.html.php | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/modules/info/views/info_block.html.php b/modules/info/views/info_block.html.php index db621006..ccb564d3 100644 --- a/modules/info/views/info_block.html.php +++ b/modules/info/views/info_block.html.php @@ -2,12 +2,12 @@ <ul class="gMetadata"> <li> <strong class="caption"><?= t("Title:") ?></strong> - <?= p::clean($item->title) ?> + <?= p::purify($item->title) ?> </li> <? if ($item->description): ?> <li> <strong class="caption"><?= t("Description:") ?></strong> - <?= p::clean($item->description) ?> + <?= p::purify($item->description) ?> </li> <? endif ?> <? if ($item->id != 1): ?> |