Changeset 1145

Show
Ignore:
Timestamp:
06/16/2008 08:36:37 AM (2 years ago)
Author:
DotMG
Message:

refs #749

Applying htmlspecialchars_ent() to some strings to ensure XHTML validation.

Files:
1 modified

Legend:

Unmodified
Added
Removed
  • branches/1.1.6.5/actions/feedback.php

    r1062 r1145  
    1414$form = "<p>Fill in the form below to send us your comments:</p>". 
    1515            $this->FormOpen(). 
    16             "\nName: <input name=\"name\" value=\"".$name."\" type=\"text\" /><br />". 
     16            "\nName: <input name=\"name\" value=\"".$this->htmlspecialchars_ent($name)."\" type=\"text\" /><br />". 
    1717            "\n<input type=\"hidden\" name=\"mail\" value=\"result\">". 
    18             "\nEmail: <input name=\"email\" value=\"".$email."\" type=\"text\" /><br />". 
    19             "\nComments:<br />\n<textarea name=\"comments\" rows=\"15\" cols=\"40\">".$comments."</textarea><br / >". 
     18            "\nEmail: <input name=\"email\" value=\"".$this->htmlspecialchars_ent($email)."\" type=\"text\" /><br />". 
     19            "\nComments:<br />\n<textarea name=\"comments\" rows=\"15\" cols=\"40\">".$this->htmlspecialchars_ent($comments)."</textarea><br / >". 
    2020            "\n<input type=\"submit\" value=\"Send\" />". 
    2121            $this->FormClose();