Fix security issue reported by @chbi

Vulnerability introduced by 6ccd0b218f - release with Shaarli v0.9.1.
This commit is contained in:
ArthurHoaro 2017-10-07 11:27:44 +02:00
parent a59bbf50d7
commit d14555a3df
2 changed files with 3 additions and 3 deletions

View file

@ -840,7 +840,7 @@ function renderPage($conf, $pluginManager, $LINKSDB, $history)
}
$data = array(
'search_tags' => implode(' ', $filteringTags),
'search_tags' => implode(' ', escape($filteringTags)),
'tags' => $tagList,
);
$pluginManager->executeHooks('render_tagcloud', $data, array('loggedin' => isLoggedIn()));
@ -870,7 +870,7 @@ function renderPage($conf, $pluginManager, $LINKSDB, $history)
}
$data = [
'search_tags' => implode(' ', $filteringTags),
'search_tags' => implode(' ', escape($filteringTags)),
'tags' => $tags,
];
$pluginManager->executeHooks('render_taglist', $data, ['loggedin' => isLoggedIn()]);