diff options
-rw-r--r-- | password.php | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/password.php b/password.php index 0c4ecd05e..888dfefa7 100644 --- a/password.php +++ b/password.php @@ -324,7 +324,7 @@ if ('lost' == $page['action']) if (isset($_POST['username_or_email'])) { - $template->assign('username_or_email', stripslashes(strip_tags($_POST['username_or_email']))); + $template->assign('username_or_email', htmlspecialchars(stripslashes($_POST['username_or_email']))); } } |