diff options
author | DukePyrolator <DukePyrolator@anope.org> | 2013-11-22 01:22:24 +0100 |
---|---|---|
committer | DukePyrolator <DukePyrolator@anope.org> | 2013-11-22 01:22:24 +0100 |
commit | 77e57443416fc12f77a1bcf23a7f0341b8d12f9f (patch) | |
tree | 0bad0ad14b18630b89a6e22d0255f839f6ff1f55 | |
parent | e1264a5913a8e5869350521913f9e36841ae4cee (diff) |
fixed webcpanel not html escaping displayed memos, bug reported by Mietzie
-rw-r--r-- | modules/extra/webcpanel/pages/memoserv/memos.cpp | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/modules/extra/webcpanel/pages/memoserv/memos.cpp b/modules/extra/webcpanel/pages/memoserv/memos.cpp index 5dc1456b9..13c3dbda9 100644 --- a/modules/extra/webcpanel/pages/memoserv/memos.cpp +++ b/modules/extra/webcpanel/pages/memoserv/memos.cpp @@ -101,7 +101,7 @@ bool WebCPanel::MemoServ::Memos::OnRequest(HTTPProvider *server, const Anope::st replacements["NUMBER"] = stringify(i+1); replacements["SENDER"] = m->sender; replacements["TIME"] = Anope::strftime(m->time); - replacements["TEXT"] = m->text; + replacements["TEXT"] = HTTPUtils::Escape(m->text); if (m->unread) replacements["UNREAD"] = "YES"; else |