From 7a3791d955a90bf00887aa000bed0788d0735a0f Mon Sep 17 00:00:00 2001 From: Matthew Weier O'Phinney Date: Fri, 1 Nov 2013 12:07:53 -0500 Subject: [PATCH] [#224] Escape exception messages and traces --- module/Application/view/error/index.phtml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/module/Application/view/error/index.phtml b/module/Application/view/error/index.phtml index 5165cd8eba..787f05222b 100644 --- a/module/Application/view/error/index.phtml +++ b/module/Application/view/error/index.phtml @@ -14,11 +14,11 @@
translate('Message') ?>:
-
exception->getMessage() ?>
+
escapeHtml($this->exception->getMessage()) ?>
translate('Stack trace') ?>:
-
exception->getTraceAsString() ?>
+
escapeHtml($this->exception->getTraceAsString()) ?>
translate('Message') ?>:
-
getMessage() ?>
+
escapeHtml($e->getMessage()) ?>
translate('Stack trace') ?>:
-
getTraceAsString() ?>
+
escapeHtml($e->getTraceAsString()) ?>