Ignore:
Timestamp:
Mar 4, 2013, 3:31:46 PM (11 years ago)
Author:
plg
Message:

bug 2859 fixed: sanitize of photo title before use in title/alt HTML attributes

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/themes/default/template/picture.tpl

    r21039 r21175  
    135135        <div class="navThumbs">
    136136                {if isset($previous)}
    137                         <a class="navThumb" id="linkPrev" href="{$previous.U_IMG}" title="{'Previous'|@translate} : {$previous.TITLE}" rel="prev">
     137                        <a class="navThumb" id="linkPrev" href="{$previous.U_IMG}" title="{'Previous'|@translate} :: {$previous.TITLE|@escape}" rel="prev">
    138138                                <span class="thumbHover prevThumbHover"></span>
    139                                 <img src="{$previous.derivatives.square->get_url()}" alt="{$previous.TITLE}">
     139                                <img src="{$previous.derivatives.square->get_url()}" alt="{$previous.TITLE|@escape}">
    140140                        </a>
    141141                {/if}
    142142                {if isset($next)}
    143                         <a class="navThumb" id="linkNext" href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE}" rel="next">
     143                        <a class="navThumb" id="linkNext" href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE|@escape}" rel="next">
    144144                                <span class="thumbHover nextThumbHover"></span>
    145                                 <img src="{$next.derivatives.square->get_url()}" alt="{$next.TITLE}">
     145                                <img src="{$next.derivatives.square->get_url()}" alt="{$next.TITLE|@escape}">
    146146                        </a>
    147147                {/if}
Note: See TracChangeset for help on using the changeset viewer.