mirror of
https://git.code.sf.net/p/seeddms/code
synced 2025-05-12 04:31:32 +00:00
- prevent xss attack
This commit is contained in:
parent
8a20cbbbc1
commit
24d41c956d
|
@ -693,7 +693,7 @@ class UI {
|
||||||
if ($folderID != $currentFolderID){
|
if ($folderID != $currentFolderID){
|
||||||
|
|
||||||
if ($navigation) print "<a href=\"../out/out.ViewFolder.php?folderid=" . $folderID . "&showtree=1\">";
|
if ($navigation) print "<a href=\"../out/out.ViewFolder.php?folderid=" . $folderID . "&showtree=1\">";
|
||||||
else print "<a class=\"foldertree_selectable\" href=\"javascript:folderSelected(" . $folderID . ", '" . str_replace("'", "\\'", $folder->getName()) . "')\">";
|
else print "<a class=\"foldertree_selectable\" href=\"javascript:folderSelected(" . $folderID . ", '" . str_replace("'", "\\'", htmlspecialchars($folder->getName())) . "')\">";
|
||||||
|
|
||||||
}else print "<span class=\"selectedfoldertree\">";
|
}else print "<span class=\"selectedfoldertree\">";
|
||||||
|
|
||||||
|
|
Loading…
Reference in New Issue
Block a user