From 471bc1805a0df6fb43e2b97cd0557ced6ec22dd2 Mon Sep 17 00:00:00 2001 From: Shish Date: Fri, 4 Jan 2013 22:40:16 +0000 Subject: [PATCH] escape title too --- ext/comment/theme.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/ext/comment/theme.php b/ext/comment/theme.php index 100847f1..5bcc1fc6 100644 --- a/ext/comment/theme.php +++ b/ext/comment/theme.php @@ -198,7 +198,7 @@ class CommentListTheme extends Themelet { $h_index = "Index"; $h_next = ($page_number >= $total_pages) ? "Next" : "Next"; - $page->set_title($user->name."'s comments"); + $page->set_title(html_escape($user->name)."'s comments"); $page->add_block(new Block("Navigation", $h_prev.' | '.$h_index.' | '.$h_next, "left", 0)); $this->display_paginator($page, "comment/beta-search/{$user->name}", null, $page_number, $total_pages); }