瀏覽代碼

Fix xss in legend in form

Visman 3 年之前
父節點
當前提交
e6ba2c4688
共有 1 個文件被更改,包括 1 次插入1 次删除
  1. 1 1
      app/templates/layouts/form.forkbb.php

+ 1 - 1
app/templates/layouts/form.forkbb.php

@@ -9,7 +9,7 @@
     @elseif (isset($setVal['fields']))
           <fieldset id="id-fs-{{ $setKey }}" @if ($setVal['class']) class="f-fs-{{ \implode(' f-fs-', $setVal['class']) }}" @endif>
         @if ($setVal['legend'])
-            <legend class="f-fleg">{!! $setVal['legend'] !!}</legend>
+            <legend class="f-fleg">{{ $setVal['legend'] }}</legend>
         @endif
         @foreach ($setVal['fields'] as $key => $cur)
             @if ('info' === $cur['type'])