mirror of
https://git.code.sf.net/p/seeddms/code
synced 2025-03-12 00:45:34 +00:00
- prevent xss attack
This commit is contained in:
parent
8a20cbbbc1
commit
24d41c956d
|
@ -693,7 +693,7 @@ class UI {
|
|||
if ($folderID != $currentFolderID){
|
||||
|
||||
if ($navigation) print "<a href=\"../out/out.ViewFolder.php?folderid=" . $folderID . "&showtree=1\">";
|
||||
else print "<a class=\"foldertree_selectable\" href=\"javascript:folderSelected(" . $folderID . ", '" . str_replace("'", "\\'", $folder->getName()) . "')\">";
|
||||
else print "<a class=\"foldertree_selectable\" href=\"javascript:folderSelected(" . $folderID . ", '" . str_replace("'", "\\'", htmlspecialchars($folder->getName())) . "')\">";
|
||||
|
||||
}else print "<span class=\"selectedfoldertree\">";
|
||||
|
||||
|
|
Loading…
Reference in New Issue
Block a user