Browse Source

af_comics: escape all template urls

Andrew Dolgov 6 months ago
parent
commit
61168847ac
1 changed files with 1 additions and 1 deletions
  1. 1 1
      plugins/af_comics/init.php

+ 1 - 1
plugins/af_comics/init.php

@@ -206,7 +206,7 @@ class Af_Comics extends Plugin {
 						$tpl->setVariable('ARTICLE_CONTENT', "<p> " . $doc->saveHTML($content_node) . "</p>", true);
 
 						$tpl->setVariable('ARTICLE_AUTHOR', '', true);
-						$tpl->setVariable('ARTICLE_SOURCE_LINK', $article_link, true);
+						$tpl->setVariable('ARTICLE_SOURCE_LINK', htmlspecialchars($article_link), true);
 						$tpl->setVariable('ARTICLE_SOURCE_TITLE', "The Far Side", true);
 
 						$tpl->addBlock('entry');