Browse files

MDL-28726 wiki-2.0: Fixed XSS in wiki comments

  • Loading branch information...
1 parent 9cfaebb commit a459fd90625ae44d7b3ac10b65da2dc631a418e7 Rajesh Taneja committed Sep 16, 2011
Showing with 1 addition and 1 deletion.
  1. +1 −1 mod/wiki/pagelib.php
View
2 mod/wiki/pagelib.php
@@ -643,7 +643,7 @@ function print_content() {
$parsedcontent = wiki_parse_content('nwiki', $comment->content, $options);
}
- $cell4->text = html_entity_decode($parsedcontent['parsed_text']);
+ $cell4->text = format_text(html_entity_decode($parsedcontent['parsed_text']), FORMAT_HTML);
} else {
$cell4->text = format_text($comment->content, FORMAT_HTML);
}

0 comments on commit a459fd9

Please sign in to comment.