mirror of
https://github.com/itflow-org/itflow
synced 2026-03-02 11:54:52 +00:00
Escape potential HTML in ticket prefix
This commit is contained in:
@@ -105,7 +105,7 @@
|
|||||||
|
|
||||||
while($row = mysqli_fetch_array($sql_related_tickets)){
|
while($row = mysqli_fetch_array($sql_related_tickets)){
|
||||||
$ticket_id = $row['ticket_id'];
|
$ticket_id = $row['ticket_id'];
|
||||||
$ticket_prefix = $row['ticket_prefix'];
|
$ticket_prefix = htmlentities($row['ticket_prefix']);
|
||||||
$ticket_number = $row['ticket_number'];
|
$ticket_number = $row['ticket_number'];
|
||||||
$ticket_subject = htmlentities($row['ticket_subject']);
|
$ticket_subject = htmlentities($row['ticket_subject']);
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user