Commit 85e6b250cf4674df9afe8e3575f4e288e55bd1b7
1 parent
aa7889bb
KTS-2178
"cross site scripting" Implemented. Reviewed By: Kevin Fourie git-svn-id: https://kt-dms.svn.sourceforge.net/svnroot/kt-dms/trunk@7003 c91229c3-7414-0410-bfa2-8a42b809f60b
Showing
1 changed file
with
1 additions
and
1 deletions
templates/ktcore/folder/view_permissions.smarty
| ... | ... | @@ -16,7 +16,7 @@ assigned are shown.{/i18n}</p> |
| 16 | 16 | <p> |
| 17 | 17 | <div class="ktInfoMessage"> |
| 18 | 18 | { if $inherited } |
| 19 | -<span>{i18n arg_permission_source=$inherited}This folder <strong>inherits</strong> its permissions from #permission_source#.{/i18n} | |
| 19 | +<span>{i18n arg_permission_source=$inherited|sanitize}This folder <strong>inherits</strong> its permissions from #permission_source#.{/i18n} | |
| 20 | 20 | {if $inheritable} |
| 21 | 21 | <a class="ktActionLink ktDelete" |
| 22 | 22 | kt:deleteMessage="{i18n}Are you sure you wish to override the permissions?{/i18n}" | ... | ... |