http://www.mediawiki.org/wiki/Special:Code/MediaWiki/95599
Revision: 95599 Author: johnduhart Date: 2011-08-27 14:59:50 +0000 (Sat, 27 Aug 2011) Log Message: ----------- Follow-up r95043, htmlspecialchars() the content Modified Paths: -------------- trunk/extensions/CodeReview/backend/DiffHighlighter.php Modified: trunk/extensions/CodeReview/backend/DiffHighlighter.php =================================================================== --- trunk/extensions/CodeReview/backend/DiffHighlighter.php 2011-08-27 12:30:46 UTC (rev 95598) +++ trunk/extensions/CodeReview/backend/DiffHighlighter.php 2011-08-27 14:59:50 UTC (rev 95599) @@ -188,6 +188,7 @@ # Rely on $left, $right initialization above } + $content = htmlspecialchars( $content ); $classAttr = is_null($class) ? '' : " class=\"$class\""; return sprintf( "<tr class=\"commentable\" {$idAttr}>{$formatLN}<td%s>%s</td></tr>\n", $left, $right, _______________________________________________ MediaWiki-CVS mailing list MediaWiki-CVS@lists.wikimedia.org https://lists.wikimedia.org/mailman/listinfo/mediawiki-cvs