diff options
| author | Tim Almdal <tnalmdal@shaw.ca> | 2009-07-03 21:44:10 -0700 |
|---|---|---|
| committer | Tim Almdal <tnalmdal@shaw.ca> | 2009-07-03 21:44:10 -0700 |
| commit | 54ffea24196e8f5d88cf9d8607455f0f6aab305c (patch) | |
| tree | fc0443ec5b8976d154134f667e21adb80cfea06d /themes/default/views/photo.html.php | |
| parent | a633c134b754305eaa611c5d67af4ca7c79beafe (diff) | |
Split the clean method into two clean and purify. clean is a light weight
approach using html::specialchars and purify uses HTMLPurifier to intelligently
cleanse the output fields. Use purifier for text and title fields where it is
likely that a user would enter html to format their data.
Diffstat (limited to 'themes/default/views/photo.html.php')
| -rw-r--r-- | themes/default/views/photo.html.php | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/themes/default/views/photo.html.php b/themes/default/views/photo.html.php index 4765a4e3..dc3a9dfd 100644 --- a/themes/default/views/photo.html.php +++ b/themes/default/views/photo.html.php @@ -50,8 +50,8 @@ </div> <div id="gInfo"> - <h1><?= p::clean($item->title) ?></h1> - <div><?= p::clean($item->description) ?></div> + <h1><?= p::purify($item->title) ?></h1> + <div><?= p::purify($item->description) ?></div> </div> <script type="text/javascript"> |
