diff options
Diffstat (limited to 'modules')
-rw-r--r-- | modules/pref-feeds.php | 2 | ||||
-rw-r--r-- | modules/pref-filters.php | 2 |
2 files changed, 3 insertions, 1 deletions
diff --git a/modules/pref-feeds.php b/modules/pref-feeds.php index 613e9bf40..1acc58114 100644 --- a/modules/pref-feeds.php +++ b/modules/pref-feeds.php @@ -377,6 +377,8 @@ print "</form>"; + $title = htmlspecialchars($title, ENT_QUOTES); + print "<div class='dlgButtons'> <div style=\"float : left\"> <input type='submit' class='button' diff --git a/modules/pref-filters.php b/modules/pref-filters.php index 4ada43370..fa47bdca8 100644 --- a/modules/pref-filters.php +++ b/modules/pref-filters.php @@ -115,7 +115,7 @@ print "<div class=\"dlgButtons\">"; - $reg_exp = htmlspecialchars($reg_exp); // second escaping seems to be needed for javascript + $reg_exp = htmlspecialchars($reg_exp, ENT_QUOTES); // second escaping seems to be needed for javascript print "<div style=\"float : left\">"; print "<input type=\"submit\" |