From a489481c3341ac30fdad711f20d0fde4ddf4ed88 Mon Sep 17 00:00:00 2001 From: conradverm Date: Fri, 13 Jul 2007 15:17:13 +0000 Subject: [PATCH] KTS-2178 "cross site scripting" Updated. --- templates/ktcore/forms/widgets/text.smarty | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/templates/ktcore/forms/widgets/text.smarty b/templates/ktcore/forms/widgets/text.smarty index b269a64..8dc69cd 100644 --- a/templates/ktcore/forms/widgets/text.smarty +++ b/templates/ktcore/forms/widgets/text.smarty @@ -2,4 +2,4 @@ {if $has_id} id="{$id}"{/if} {if $options.rows} rows="{$options.rows}"{else} rows="7"{/if} {if $options.cols} cols="{$options.cols}"{else} cols="45"{/if} - >{if $has_value}{$value}{/if} + >{if $has_value}{$value|sanitize_input}{/if} -- libgit2 0.21.4