diff options
author | Andy Staudacher <andy.st@gmail.com> | 2009-08-31 21:51:57 -0700 |
---|---|---|
committer | Andy Staudacher <andy.st@gmail.com> | 2009-08-31 21:51:57 -0700 |
commit | 2bc73e2e36fefc3c1ee1b8e97e686c6729e58dcb (patch) | |
tree | c511db2684ea957572a1d27caf49a08963ef8484 /modules/watermark | |
parent | 8c3a2db3803ccaa3572f0bf061ca7faf62f13fca (diff) |
Fix XSS vectors in HTML attributes (mostly t() calls)
Diffstat (limited to 'modules/watermark')
-rw-r--r-- | modules/watermark/views/admin_watermarks.html.php | 6 |
1 files changed, 3 insertions, 3 deletions
diff --git a/modules/watermark/views/admin_watermarks.html.php b/modules/watermark/views/admin_watermarks.html.php index e83a7efa..ac69d21d 100644 --- a/modules/watermark/views/admin_watermarks.html.php +++ b/modules/watermark/views/admin_watermarks.html.php @@ -7,7 +7,7 @@ <? if (empty($name)): ?> <a href="<?= url::site("admin/watermarks/form_add") ?>" - title="<?= t("Upload a watermark") ?>" + title="<?= t("Upload a watermark")->for_html_attr() ?>" class="gDialogLink gButtonLink ui-icon-left ui-state-default ui-corner-all"><span class="ui-icon ui-icon-document-b"></span><?= t("Upload a watermark") ?></a> <? else: ?> <h2> <?= t("Active Watermark") ?> </h2> @@ -26,10 +26,10 @@ </div> <div class="controls"> <a href="<?= url::site("admin/watermarks/form_edit") ?>" - title="<?= t("Edit Watermark") ?>" + title="<?= t("Edit Watermark")->for_html_attr() ?>" class="gDialogLink gButtonLink ui-icon-left ui-state-default ui-corner-all"><span class="ui-icon ui-icon-pencil"></span><?= t("edit") ?></a> <a href="<?= url::site("admin/watermarks/form_delete") ?>" - title="<?= t("Delete Watermark") ?>" + title="<?= t("Delete Watermark")->for_html_attr() ?>" class="gDialogLink gButtonLink ui-icon-left ui-state-default ui-corner-all"><span class="ui-icon ui-icon-trash"></span><?= t("delete") ?></a> </div> </div> |