Changeset 21175


Ignore:
Timestamp:
Mar 4, 2013, 3:31:46 PM (7 years ago)
Author:
plg
Message:

bug 2859 fixed: sanitize of photo title before use in title/alt HTML attributes

Location:
trunk/themes/default/template
Files:
3 edited

Legend:

Unmodified
Added
Removed
  • trunk/themes/default/template/picture.tpl

    r21039 r21175  
    135135        <div class="navThumbs">
    136136                {if isset($previous)}
    137                         <a class="navThumb" id="linkPrev" href="{$previous.U_IMG}" title="{'Previous'|@translate} : {$previous.TITLE}" rel="prev">
     137                        <a class="navThumb" id="linkPrev" href="{$previous.U_IMG}" title="{'Previous'|@translate} :: {$previous.TITLE|@escape}" rel="prev">
    138138                                <span class="thumbHover prevThumbHover"></span>
    139                                 <img src="{$previous.derivatives.square->get_url()}" alt="{$previous.TITLE}">
     139                                <img src="{$previous.derivatives.square->get_url()}" alt="{$previous.TITLE|@escape}">
    140140                        </a>
    141141                {/if}
    142142                {if isset($next)}
    143                         <a class="navThumb" id="linkNext" href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE}" rel="next">
     143                        <a class="navThumb" id="linkNext" href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE|@escape}" rel="next">
    144144                                <span class="thumbHover nextThumbHover"></span>
    145                                 <img src="{$next.derivatives.square->get_url()}" alt="{$next.TITLE}">
     145                                <img src="{$next.derivatives.square->get_url()}" alt="{$next.TITLE|@escape}">
    146146                        </a>
    147147                {/if}
  • trunk/themes/default/template/picture_content.tpl

    r20336 r21175  
    1111{assign var='size' value=$derivative->get_size()}
    1212{if isset($previous)}
    13 <area shape=rect coords="0,0,{$size[0]/4|@intval},{$size[1]}" href="{$previous.U_IMG}" title="{'Previous'|@translate} : {$previous.TITLE}" alt="{$previous.TITLE}">
     13<area shape=rect coords="0,0,{$size[0]/4|@intval},{$size[1]}" href="{$previous.U_IMG}" title="{'Previous'|@translate} : {$previous.TITLE|@escape}" alt="{$previous.TITLE|@escape}">
    1414{/if}
    1515<area shape=rect coords="{$size[0]/4|@intval},0,{$size[0]/1.34|@intval},{$size[1]/4|@intval}" href="{$U_UP}" title="{'Thumbnails'|@translate}" alt="{'Thumbnails'|@translate}">
    1616{if isset($next)}
    17 <area shape=rect coords="{$size[0]/1.33|@intval},0,{$size[0]},{$size[1]}" href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE}" alt="{$next.TITLE}">
     17<area shape=rect coords="{$size[0]/1.33|@intval},0,{$size[0]},{$size[1]}" href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE|@escape}" alt="{$next.TITLE|@escape}">
    1818{/if}
    1919</map>
  • trunk/themes/default/template/picture_nav_buttons.tpl

    r20542 r21175  
    4646{/if}{/strip}
    4747{strip}{if isset($previous)}
    48         <a href="{$previous.U_IMG}" title="{'Previous'|@translate} : {$previous.TITLE}" class="pwg-state-default pwg-button">
     48        <a href="{$previous.U_IMG}" title="{'Previous'|@translate} : {$previous.TITLE|@escape}" class="pwg-state-default pwg-button">
    4949                <span class="pwg-icon pwg-icon-arrow-w">&nbsp;</span><span class="pwg-button-text">{'Previous'|@translate}</span>
    5050        </a>
     
    6565{/if}
    6666{strip}{if isset($next)}
    67         <a href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE}" class="pwg-state-default pwg-button pwg-button-icon-right">
     67        <a href="{$next.U_IMG}" title="{'Next'|@translate} : {$next.TITLE|@escape}" class="pwg-state-default pwg-button pwg-button-icon-right">
    6868                <span class="pwg-icon pwg-icon-arrow-e">&nbsp;</span><span class="pwg-button-text">{'Next'|@translate}</span>
    6969        </a>
Note: See TracChangeset for help on using the changeset viewer.