Changeset 1623


Ignore:
Timestamp:
Oct 4, 2010, 1:29:50 AM (10 years ago)
Author:
teymour
Message:

Protection des quotes

Location:
cpc/trunk/project/apps/frontend
Files:
2 edited

Legend:

Unmodified
Added
Removed
  • cpc/trunk/project/apps/frontend/modules/solr/templates/_searchbox.php

    r1602 r1623  
    22  <form action="">
    33  <p>
    4     <input name="search" id="search" value="<?php echo strip_tags($sf_request->getParameter('query')); ?>" />
     4     <input name="search" id="search" value="<?php echo str_replace('"', '&quot;', strip_tags($sf_request->getParameter('query'))); ?>" />
    55    <input type="submit" value="Rechercher"/>
    66  </p>
  • cpc/trunk/project/apps/frontend/templates/layout.php

    r1598 r1623  
    8383          <form action="<?php echo url_for('@recherche_solr'); ?>" method="get">
    8484            <p>
    85               <input class="rechercher <?php echo $extraclass; ?>" name="search" type="text" size="25" value="<?php echo $search; ?>"/>
     85              <input class="rechercher <?php echo $extraclass; ?>" name="search" type="text" size="25" value="<?php echo str_replace('"', '&quot;', $search); ?>"/>
    8686              <input class="bouton_ok" value="" type="submit"/>
    8787                        </p>
Note: See TracChangeset for help on using the changeset viewer.