1day2die пре 2 година
родитељ
комит
e6b2afa1dc

+ 1 - 1
app/Http/Controllers/Moderation/TicketsController.php

@@ -79,7 +79,7 @@ class TicketsController extends Controller
                 return $tickets->ticketcategory->name;
                 return $tickets->ticketcategory->name;
             })
             })
             ->editColumn('title', function (Ticket $tickets) {
             ->editColumn('title', function (Ticket $tickets) {
-                return '<a class="text-info"  href="'.route('moderator.ticket.show', ['ticket_id' => $tickets->ticket_id]).'">'.'#'.$tickets->ticket_id.' - '.$tickets->title.'</a>';
+                return '<a class="text-info"  href="'.route('moderator.ticket.show', ['ticket_id' => $tickets->ticket_id]).'">'.'#'.$tickets->ticket_id.' - '.htmlspecialchars($tickets->title).'</a>';
             })
             })
             ->editColumn('user_id', function (Ticket $tickets) {
             ->editColumn('user_id', function (Ticket $tickets) {
                 return '<a href="'.route('admin.users.show', $tickets->user->id).'">'.$tickets->user->name.'</a>';
                 return '<a href="'.route('admin.users.show', $tickets->user->id).'">'.$tickets->user->name.'</a>';

+ 1 - 1
app/Http/Controllers/TicketsController.php

@@ -117,7 +117,7 @@ class TicketsController extends Controller
                 return $tickets->ticketcategory->name;
                 return $tickets->ticketcategory->name;
             })
             })
             ->editColumn('title', function (Ticket $tickets) {
             ->editColumn('title', function (Ticket $tickets) {
-                return '<a class="text-info"  href="'.route('ticket.show', ['ticket_id' => $tickets->ticket_id]).'">'.'#'.$tickets->ticket_id.' - '.$tickets->title.'</a>';
+                return '<a class="text-info"  href="'.route('ticket.show', ['ticket_id' => $tickets->ticket_id]).'">'.'#'.$tickets->ticket_id.' - '.htmlspecialchars($tickets->title).'</a>';
             })
             })
             ->editColumn('status', function (Ticket $tickets) {
             ->editColumn('status', function (Ticket $tickets) {
                 switch ($tickets->status) {
                 switch ($tickets->status) {