Skip to content

Commit

Permalink
Browse files Browse the repository at this point in the history
Fixed issue #19114: [security] Admin with Settings & Plugins permissi…
…on only can store XSS in Survey menus (#3542)

Co-authored-by: lapiudevgit <devgit@lapiu.biz>
  • Loading branch information
gabrieljenik and lapiudevgit committed Oct 18, 2023
1 parent 25ff904 commit d3fb278
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion application/models/SurveymenuEntries.php
Expand Up @@ -385,7 +385,7 @@ public function getColumns()
[
'name' => 'data',
'value' => '$data->data ? "<i class=\'ri-information-fill bigIcons\' title=\'".$data->data."\'></i>"
: ( $data->getdatamethod ? gT("GET data method:")."<br/>".$data->getdatamethod : "")',
: ( $data->getdatamethod ? gT("GET data method:")."<br/>".CHtml::encode($data->getdatamethod) : "")',
'type' => 'raw',
'filter' => false,
],
Expand Down

0 comments on commit d3fb278

Please sign in to comment.