Ignore:
Timestamp:
May 4, 2014, 4:00:55 PM (10 years ago)
Author:
mistic100
Message:

fix escaping

File:
1 edited

Legend:

Unmodified
Added
Removed
  • extensions/ContactForm/admin/template/config.tpl

    r25872 r28343  
    5858      <li>
    5959        <label>
    60           <input type="text" name="cf_default_subject" value="{$cf_default_subject}" size="50">
     60          <input type="text" name="cf_default_subject" value="{$cf_default_subject|escape:html}" size="50">
    6161          {'Default e-mail subject'|translate} ({'can be translated with LocalFiles Editor plugin'|translate})
    6262        </label>
     
    6464      <li>
    6565        <label>
    66           <input type="text" name="cf_subject_prefix" value="{$cf_subject_prefix}" size="50">
     66          <input type="text" name="cf_subject_prefix" value="{$cf_subject_prefix|escape:html}" size="50">
    6767          {'Prefix of the sent e-mail subject'|translate} ({'you can use "%gallery_title%"'|translate})
    6868        </label>
Note: See TracChangeset for help on using the changeset viewer.