From 852c4741353ee65c68e8176d1668a4bfd2f90764 Mon Sep 17 00:00:00 2001 From: conradverm Date: Fri, 13 Jul 2007 15:14:09 +0000 Subject: [PATCH] KTS-2178 "cross site scripting" Updated. --- templates/ktstandard/action/discussion_comment_list_item.smarty | 16 ++++++++-------- 1 file changed, 8 insertions(+), 8 deletions(-) diff --git a/templates/ktstandard/action/discussion_comment_list_item.smarty b/templates/ktstandard/action/discussion_comment_list_item.smarty index abb50ab..385c19b 100644 --- a/templates/ktstandard/action/discussion_comment_list_item.smarty +++ b/templates/ktstandard/action/discussion_comment_list_item.smarty @@ -5,16 +5,16 @@ {else}
{/if} - -
{i18n arg_subject=$comment->getSubject() arg_author=$creator->getName() arg_date=$comment->getDate()} - #subject# + +
+ {$comment->getSubject()|sanitize_input} by - #author# - (#date#) - {/i18n} + {$creator->getName()} + ({$comment->getDate()}) +
- -
{$comment->getBody()}
+ +
{$comment->getBody()|sanitize_input}
-- libgit2 0.21.4