From cc653a8a408adfb4d0cd532145668aacd85ad96c Mon Sep 17 00:00:00 2001 From: Lukas Reschke Date: Mon, 11 Jun 2012 00:23:35 +0200 Subject: [PATCH] Sanitize user input --- apps/user_openid/settings.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/apps/user_openid/settings.php b/apps/user_openid/settings.php index 921fa371dd..062322f6fe 100644 --- a/apps/user_openid/settings.php +++ b/apps/user_openid/settings.php @@ -2,7 +2,7 @@ $tmpl = new OCP\Template( 'user_openid', 'settings'); $identity=OCP\Config::getUserValue(OCP\USER::getUser(),'user_openid','identity',''); -$tmpl->assign('identity',$identity); +$tmpl->assign('identity',htmlentities($identity)); OCP\Util::addscript('user_openid','settings');