Plugin: JCapture: Remove XSS

pull/4075/head
Angel Fernando Quiroz Campos 4 years ago
parent 2866be5c94
commit c3585401b5
  1. 2
      plugin/jcapture/applet.php
  2. 2
      plugin/jcapture/plugin_applet.php

@ -86,7 +86,7 @@ Java 2 Standard Edition v 1.7 or above is required for this applet.<br/>
<APPLET CODE = "com.hammurapi.jcapture.JCaptureApplet.class" ARCHIVE = "<?php echo DOKU_BASE; ?>/lib/plugins/jcapture/lib/jcapture.jar" NAME = "jCapture">
<PARAM NAME = "dokuBase" VALUE="<?php echo bin2hex(DOKU_BASE); ?>">
<PARAM NAME = "sectok" VALUE="<?php echo getSecurityToken(); ?>">
<PARAM NAME = "cookies" VALUE="<?php echo $cookies; ?>">
<PARAM NAME = "cookies" VALUE="<?php echo Security::remove_XSS($cookies); ?>">
<PARAM NAME = "host" VALUE="<?php echo $hostName; ?>">
Java 2 Standard Edition v 1.7 or above is required for this applet.<br/>
Download it from <a href="http://java.sun.com">http://java.sun.com</a>.

@ -68,7 +68,7 @@ function insertAtCarret() {
NAME = "jCapture"
dokuBase ="<?php echo bin2hex(DOKU_BASE); ?>"
sectok ="<?php echo getSecurityToken(); ?>"
cookies ="<?php echo $cookies; ?>"
cookies ="<?php echo Security::remove_XSS($cookies); ?>"
pageName = "<?php echo $pageName; ?>"
edid = "<?php echo $edid; ?>"
host ="<?php echo $hostName; ?>"

Loading…
Cancel
Save