diff options
author | rub <rub@piwigo.org> | 2007-06-07 18:52:40 +0000 |
---|---|---|
committer | rub <rub@piwigo.org> | 2007-06-07 18:52:40 +0000 |
commit | fcb3c824a0ee2c750453de1ccc12dd4a9af8f0b0 (patch) | |
tree | 6854f8a69b89eea3ab36a746ca6bc43ee7303650 /comments.php | |
parent | d949a3862434284607dca5234b54a4e8e594d32f (diff) |
Resolved issue 0000702: Code Injection with picture comment
Merge BSF 2029:2030 into branch-1_7
git-svn-id: http://piwigo.org/svn/branches/branch-1_7@2031 68402e56-0260-453c-a942-63ccdbb3a9ee
Diffstat (limited to 'comments.php')
-rw-r--r-- | comments.php | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/comments.php b/comments.php index de328152f..efcd7dfb5 100644 --- a/comments.php +++ b/comments.php @@ -411,7 +411,7 @@ SELECT id, name, permalink, uppercats 'U_PICTURE' => $url, 'TN_SRC' => $thumbnail_src, 'ALT' => $name, - 'AUTHOR' => $author, + 'AUTHOR' => trigger_event('render_comment_author', $author), 'DATE'=>format_date($comment['date'],'mysql_datetime',true), 'CONTENT'=>trigger_event('render_comment_content',$comment['content']), )); |