diff options
author | ben <ben@36083f99-b078-4883-b0ff-0f9b5a30f544> | 2009-03-04 11:41:10 +0000 |
---|---|---|
committer | ben <ben@36083f99-b078-4883-b0ff-0f9b5a30f544> | 2009-03-04 11:41:10 +0000 |
commit | 6bd1f0516481d7795b8551f4b60714fcd200be8d (patch) | |
tree | 618768a2f2a225ad8826285258be9b5d3c809f84 /views/rss/river/item | |
parent | da9a2faf1a6c3271d5b876ae13a78e58c834b54a (diff) | |
download | elgg-6bd1f0516481d7795b8551f4b60714fcd200be8d.tar.gz elgg-6bd1f0516481d7795b8551f4b60714fcd200be8d.tar.bz2 |
URL sanitation for RSS feeds
git-svn-id: https://code.elgg.org/elgg/trunk@3066 36083f99-b078-4883-b0ff-0f9b5a30f544
Diffstat (limited to 'views/rss/river/item')
-rw-r--r-- | views/rss/river/item/list.php | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/views/rss/river/item/list.php b/views/rss/river/item/list.php index 6e2a33278..214f8c800 100644 --- a/views/rss/river/item/list.php +++ b/views/rss/river/item/list.php @@ -13,7 +13,7 @@ ),false,false,'default');
$time = date("r",$item->posted);
if ($entity = get_entity($item->object_guid)) {
- $url = str_replace('&','&',$entity->getURL());
+ $url = htmlspecialchars($entity->getURL());
} else {
$url = $vars['url'];
}
|