git-svn-id: svn+ssh://murphy/home/svn/platal/branches/platal-0.9.8@47
839d8a87-29fc-0310-9880-
83ba4fa771e5
function escape_html($string)
{
if(is_string($string)) {
- $transtbl = Array('<' => '<', '>' => '>', '"' => '"');
+ $transtbl = Array('<' => '<', '>' => '>', '"' => '"', '\'' => ''');
return preg_replace("/&(?![A-Za-z]{0,4}\w{2,3};|#[0-9]{2,4};)/", "&" , strtr($string, $transtbl));
} else {
return $string;
<input type='text' name='from' size='60' value='{if $smarty.request.from}
{$smarty.request.from}
{else}
-"{$smarty.session.prenom} {$smarty.session.nom|escape}" <{$smarty.session.bestalias}@{#globals.mail.domain#}>
+"{$smarty.session.prenom} {$smarty.session.nom}" <{$smarty.session.bestalias}@{#globals.mail.domain#}>
{/if}' />
</td>
</tr>
<tr class="impair">
<td class='titre'>Sujet</td>
<td>
- <input size='60' type='text' value='{$smarty.request.title|escape}' name='title' />
+ <input size='60' type='text' value='{$smarty.request.title}' name='title' />
</td>
</tr>
<tr class="pair">
<input type="{$myval.type}" name="{$prefix}{$mykey}" size="40" value="{$myval.value}" />
{/if}
{else}
- {$myval.value|escape}
+ {$myval.value}
{/if}
</td>
</tr>