diff options
Diffstat (limited to 'mod/embed/views')
-rw-r--r-- | mod/embed/views/default/object/default/embed.php | 9 |
1 files changed, 5 insertions, 4 deletions
diff --git a/mod/embed/views/default/object/default/embed.php b/mod/embed/views/default/object/default/embed.php index 6f698a157..aca2ceea1 100644 --- a/mod/embed/views/default/object/default/embed.php +++ b/mod/embed/views/default/object/default/embed.php @@ -1,5 +1,6 @@ <?php - if ($vars['entity'] instanceof ElggObject) { - echo '<a href="'. $vars['entity']->getURL() .'">' . $vars['entity']->title . '</a>'; - } -?>
\ No newline at end of file + +if ($vars['entity'] instanceof ElggObject) { + $title = htmlspecialchars($vars['entity']->title, ENT_QUOTES); + echo "<a href=\"{$vars['entity']->getURL()}\">$title</a>"; +} |