diff --git a/apps/user_ldap/settings.php b/apps/user_ldap/settings.php index 9c0620578b..f1a474ff27 100644 --- a/apps/user_ldap/settings.php +++ b/apps/user_ldap/settings.php @@ -47,7 +47,7 @@ if ($_POST) { // fill template $tmpl = new OCP\Template( 'user_ldap', 'settings'); foreach($params as $param){ - $value = OCP\Config::getAppValue('user_ldap', $param,''); + $value = htmlentities(OCP\Config::getAppValue('user_ldap', $param,'')); $tmpl->assign($param, $value); }