From 0902517cd964f98c575a9b91bd76f656b6be8109 Mon Sep 17 00:00:00 2001 From: Julio Montoya Date: Wed, 26 Mar 2008 16:59:30 +0100 Subject: [PATCH] [svn r14696] Minor. Title input now with Security::remove_Xss --- main/create_course/add_course.php | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/main/create_course/add_course.php b/main/create_course/add_course.php index 321076fab1..a053b56e78 100644 --- a/main/create_course/add_course.php +++ b/main/create_course/add_course.php @@ -1,5 +1,5 @@ setDefaults($values); if($form->validate()) { $course_values = $form->exportValues(); - $wanted_code = $course_values['wanted_code']; - $tutor_name = $course_values['tutor_name']; + $wanted_code = Security::remove_XSS($course_values['wanted_code']); + $tutor_name = Security::remove_XSS($course_values['tutor_name']); $category_code = $course_values['category_code']; - $title = $course_values['title']; + $title = Security::remove_XSS($course_values['title']); $course_language = $course_values['course_language']; if(trim($wanted_code) == ''){ @@ -137,7 +137,7 @@ if($form->validate()) } else { - Display :: display_error_message(get_lang('CourseCodeAlreadyExists'),false); + Display :: display_error_message(get_lang('CourseCodeAlreadyExists'),false); $form->display(); echo '

'.get_lang('CourseCodeAlreadyExistExplained').'

'; }