Changeset 21175


Ignore:
Timestamp:
03/04/13 15:31:46 (6 years ago)
Author:
plg
Message:

bug 2859 fixed: sanitize of photo title before use in title/alt HTML attributes

Location:
trunk/themes/default/template
Files:
3 edited

Legend:

Unmodified
Added
Removed
  • trunk/themes/default/template/picture.tpl

    r21039 r21175  
    135135        <div class="navThumbs"> 
    136136                {if isset($previous)} 
    137                         <a class="navThumb" id="linkPrev" href="{$previous.U_IMG}" title="{'Previous'|@translate} : {$previous.TITLE}" rel="prev"> 
     137                        <a class="navThumb" id="linkPrev" href="{$previous.U_IMG}" title="{'Previous'|@translate} :: {$previous.TITLE|@escape}" rel="prev"> 
    138138                                <span class="thumbHover prevThumbHover"></span> 
    139                                 <img src="{$previous.derivatives.square->get_url()}" alt="{$previous.TITLE}"> 
     139                                <img src="{$previous.derivatives.square->get_url()}" alt="{$previous.TITLE|@escape}"> 
    140140                        </a> 
    141141                {/if} 
    142142                {if isset($next)} 
    143                         <a class="navThumb" id="linkNext" href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE}" rel="next"> 
     143                        <a class="navThumb" id="linkNext" href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE|@escape}" rel="next"> 
    144144                                <span class="thumbHover nextThumbHover"></span> 
    145                                 <img src="{$next.derivatives.square->get_url()}" alt="{$next.TITLE}"> 
     145                                <img src="{$next.derivatives.square->get_url()}" alt="{$next.TITLE|@escape}"> 
    146146                        </a> 
    147147                {/if} 
  • trunk/themes/default/template/picture_content.tpl

    r20336 r21175  
    1111{assign var='size' value=$derivative->get_size()} 
    1212{if isset($previous)} 
    13 <area shape=rect coords="0,0,{$size[0]/4|@intval},{$size[1]}" href="{$previous.U_IMG}" title="{'Previous'|@translate} : {$previous.TITLE}" alt="{$previous.TITLE}"> 
     13<area shape=rect coords="0,0,{$size[0]/4|@intval},{$size[1]}" href="{$previous.U_IMG}" title="{'Previous'|@translate} : {$previous.TITLE|@escape}" alt="{$previous.TITLE|@escape}"> 
    1414{/if} 
    1515<area shape=rect coords="{$size[0]/4|@intval},0,{$size[0]/1.34|@intval},{$size[1]/4|@intval}" href="{$U_UP}" title="{'Thumbnails'|@translate}" alt="{'Thumbnails'|@translate}"> 
    1616{if isset($next)} 
    17 <area shape=rect coords="{$size[0]/1.33|@intval},0,{$size[0]},{$size[1]}" href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE}" alt="{$next.TITLE}"> 
     17<area shape=rect coords="{$size[0]/1.33|@intval},0,{$size[0]},{$size[1]}" href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE|@escape}" alt="{$next.TITLE|@escape}"> 
    1818{/if} 
    1919</map> 
  • trunk/themes/default/template/picture_nav_buttons.tpl

    r20542 r21175  
    4646{/if}{/strip} 
    4747{strip}{if isset($previous)} 
    48         <a href="{$previous.U_IMG}" title="{'Previous'|@translate} : {$previous.TITLE}" class="pwg-state-default pwg-button"> 
     48        <a href="{$previous.U_IMG}" title="{'Previous'|@translate} : {$previous.TITLE|@escape}" class="pwg-state-default pwg-button"> 
    4949                <span class="pwg-icon pwg-icon-arrow-w">&nbsp;</span><span class="pwg-button-text">{'Previous'|@translate}</span> 
    5050        </a> 
     
    6565{/if} 
    6666{strip}{if isset($next)} 
    67         <a href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE}" class="pwg-state-default pwg-button pwg-button-icon-right"> 
     67        <a href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE|@escape}" class="pwg-state-default pwg-button pwg-button-icon-right"> 
    6868                <span class="pwg-icon pwg-icon-arrow-e">&nbsp;</span><span class="pwg-button-text">{'Next'|@translate}</span> 
    6969        </a> 
Note: See TracChangeset for help on using the changeset viewer.