From: Chris Cormack Date: Thu, 16 Jun 2011 20:39:29 +0000 (+1200) Subject: Bug 6518 : Fixing XSS issues on opac X-Git-Url: http://git.rot13.org/?a=commitdiff_plain;h=126d6247b28f7655cc77d0727c0bb11c23950b90;hp=-c;p=koha.git Bug 6518 : Fixing XSS issues on opac Signed-off-by: Chris Cormack --- 126d6247b28f7655cc77d0727c0bb11c23950b90 diff --git a/koha-tmpl/opac-tmpl/prog/en/modules/opac-addbybiblionumber.tt b/koha-tmpl/opac-tmpl/prog/en/modules/opac-addbybiblionumber.tt index dab4fdab9c..f6479f93cd 100644 --- a/koha-tmpl/opac-tmpl/prog/en/modules/opac-addbybiblionumber.tt +++ b/koha-tmpl/opac-tmpl/prog/en/modules/opac-addbybiblionumber.tt @@ -66,7 +66,7 @@ - [% FOREACH biblio IN biblios %] [% END %] + [% FOREACH biblio IN biblios %] [% END %]
Cancel
[% END %] diff --git a/koha-tmpl/opac-tmpl/prog/en/modules/opac-downloadcart.tt b/koha-tmpl/opac-tmpl/prog/en/modules/opac-downloadcart.tt index 45d5de72cf..8d22c4d3a0 100644 --- a/koha-tmpl/opac-tmpl/prog/en/modules/opac-downloadcart.tt +++ b/koha-tmpl/opac-tmpl/prog/en/modules/opac-downloadcart.tt @@ -19,7 +19,7 @@
- +
diff --git a/koha-tmpl/opac-tmpl/prog/en/modules/opac-downloadshelf.tt b/koha-tmpl/opac-tmpl/prog/en/modules/opac-downloadshelf.tt index 608c955801..b984f5d100 100644 --- a/koha-tmpl/opac-tmpl/prog/en/modules/opac-downloadshelf.tt +++ b/koha-tmpl/opac-tmpl/prog/en/modules/opac-downloadshelf.tt @@ -26,7 +26,7 @@ -
+
diff --git a/koha-tmpl/opac-tmpl/prog/en/modules/opac-review.tt b/koha-tmpl/opac-tmpl/prog/en/modules/opac-review.tt index 338f174441..3e696145cd 100644 --- a/koha-tmpl/opac-tmpl/prog/en/modules/opac-review.tt +++ b/koha-tmpl/opac-tmpl/prog/en/modules/opac-review.tt @@ -11,7 +11,7 @@ [% IF ( cgi_debug ) %]alert(_('injecting OLD comment: ')+comment);[% END %] parent.opener.$('#c[% reviewid %] p').prev("small").prev("h5").html("Your Edited Comment (preview, pending approval)"); parent.opener.$('#c[% reviewid %] p').html(comment); - parent.opener.$('#c[% reviewid %] p').append(" Edit<\/a>"); + parent.opener.$('#c[% reviewid %] p').append("Edit<\/a>"); [% END %] return 1; }; @@ -21,7 +21,7 @@ parent.opener.$('#newcomment').html( "
Your Comment (preview, pending approval)<\/h5>" + "

"+comment+"<\/p>" + - "Edit<\/a><\/p>" + "Edit<\/a><\/p>" ); parent.opener.$("#addcomment").prev("p").remove(); parent.opener.$("#addcomment").remove(); @@ -66,7 +66,7 @@ [% END %]

- +
Comments on [% title |html %] [% subtitle %][% IF ( author ) %]by [% author %][% END %]
diff --git a/koha-tmpl/opac-tmpl/prog/en/modules/opac-serial-issues.tt b/koha-tmpl/opac-tmpl/prog/en/modules/opac-serial-issues.tt index 8d6b94b755..5d45b53fdd 100644 --- a/koha-tmpl/opac-tmpl/prog/en/modules/opac-serial-issues.tt +++ b/koha-tmpl/opac-tmpl/prog/en/modules/opac-serial-issues.tt @@ -12,9 +12,9 @@

Issues for a subscription

[% FOREACH subscription_LOO IN subscription_LOOP %]