From 0dc513e2d904b70a29ce6e20bc5eb68ed9c36731 Mon Sep 17 00:00:00 2001 From: Conrad Vermeulen Date: Fri, 13 Jul 2007 15:15:03 +0000 Subject: [PATCH] KTS-2178 "cross site scripting" Updated. --- templates/ktcore/login.smarty | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/templates/ktcore/login.smarty b/templates/ktcore/login.smarty index aabb741..2295a6e 100644 --- a/templates/ktcore/login.smarty +++ b/templates/ktcore/login.smarty @@ -3,12 +3,12 @@ {i18n arg_appname="$appname"}Login | #appname#{/i18n} - + - - + + @@ -30,13 +30,13 @@ {if ($errorMessage == null)}

{i18n}Please enter your details below to login.{/i18n}

{else} -
{$errorMessage}
+
{$errorMessage|sanitize}
{/if} - +