escaping fix from Emanuele Aina

master
joey 2006-09-06 20:02:12 +00:00
parent 9439a374d0
commit 1f26347379
2 changed files with 2 additions and 2 deletions

View File

@ -81,7 +81,7 @@ sub cgi_recentchanges ($) { #{{{
my $changelog=[rcs_recentchanges(100)];
foreach my $change (@$changelog) {
$change->{when} = concise(ago($change->{when}));
$change->{user} = htmllink("", "", $change->{user}, 1);
$change->{user} = htmllink("", "", escapeHTML($change->{user}), 1);
$change->{pages} = [
map {
$_->{link} = htmllink("", "", $_->{page}, 1);

View File

@ -30,7 +30,7 @@
<TMPL_LOOP NAME="CHANGELOG">
<!-- <TMPL_VAR NAME="REV"> -->
<tr class="changeinfo">
<td class="changeinfo"><TMPL_VAR NAME="USER" ESCAPE="HTML"></td>
<td class="changeinfo"><TMPL_VAR NAME="USER"></td>
<td class="changetime"><TMPL_VAR NAME="WHEN"></td>
<td class="changeinfo">
<TMPL_LOOP NAME="PAGES">