From e804c18084bbbcc20e90b7943cc46c8a5876f15a Mon Sep 17 00:00:00 2001 From: Sebastian Mendel Date: Fri, 9 Nov 2007 21:24:40 +0000 Subject: [PATCH] fix for fixed possible XSS in database name - thanks to Omer Singer, The DigiTrust Group sorry ... should more test ... ;-) --- libraries/List_Database.class.php | 11 ++++++++--- 1 file changed, 8 insertions(+), 3 deletions(-) diff --git a/libraries/List_Database.class.php b/libraries/List_Database.class.php index 13274453b..6c578811b 100644 --- a/libraries/List_Database.class.php +++ b/libraries/List_Database.class.php @@ -345,10 +345,10 @@ require_once './libraries/List.class.php'; if (count($dbs) > 1) { $return .= '
  • ' . htmlspecialchars($group) . '