From a549327e25b1dfeb7dd95f3b43aea1655fdec376 Mon Sep 17 00:00:00 2001 From: Steffen Lange Date: Sat, 2 Jan 2021 18:57:01 +0100 Subject: [PATCH] Encode chars in HTML page --- PatchViewer.php | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/PatchViewer.php b/PatchViewer.php index 0927150..ba59f81 100644 --- a/PatchViewer.php +++ b/PatchViewer.php @@ -48,10 +48,10 @@ $db->sort(); for ($i = 0; $i < $db->count(); $i++) { $patch = $db->get($i); echo ''; - echo '' . $patch->getVendor() . ''; - echo '' . $patch->getProduct() . ''; - echo '' . $patch->getBranch() . ''; - echo '' . $patch->getVersion() . ''; + echo '' . htmlspecialchars($patch->getVendor()) . ''; + echo '' . htmlspecialchars($patch->getProduct()) . ''; + echo '' . htmlspecialchars($patch->getBranch()) . ''; + echo '' . htmlspecialchars($patch->getVersion()) . ''; echo '' . date('Y-m-d', $patch->getTimestamp()) . ''; echo '' . "\r\n"; }