more htmlspecialchars sanitisation

This commit is contained in:
friendica
2013-12-12 02:15:02 -08:00
parent 941f81eb30
commit 303324cdff
4 changed files with 7 additions and 7 deletions

View File

@@ -87,9 +87,9 @@ function format_term_for_display($term) {
return $s;
if($term['url'])
$s .= '<a href="' . $term['url'] . '">' . htmlspecialchars($term['term']) . '</a>';
$s .= '<a href="' . $term['url'] . '">' . htmlspecialchars($term['term'], ENT_COMPAT,'UTF-8') . '</a>';
else
$s .= htmlspecialchars($term['term']);
$s .= htmlspecialchars($term['term'], ENT_COMPAT,'UTF-8');
return $s;
}