HtmlArmor: Pass ENT_QUOTES to htmlspecialchars()
authorBartosz Dziewoński <matma.rex@gmail.com>
Sat, 6 Aug 2016 22:19:15 +0000 (00:19 +0200)
committerBartosz Dziewoński <matma.rex@gmail.com>
Sat, 6 Aug 2016 22:19:15 +0000 (00:19 +0200)
Change-Id: I0f025d938bd7def8a29788e3c02009a447853275

includes/libs/HtmlArmor.php

index 511e1c9..4ba1bc3 100644 (file)
@@ -50,7 +50,7 @@ class HtmlArmor {
                if ( $input instanceof HtmlArmor ) {
                        return $input->value;
                } else {
-                       return htmlspecialchars( $input );
+                       return htmlspecialchars( $input, ENT_QUOTES );
                }
        }
 }