From: Petr Skoda Date: Sun, 7 Mar 2010 15:16:38 +0000 (+0000) Subject: MDL-21769 fixed input validation X-Git-Tag: v2.0.0-rc1~4724 X-Git-Url: http://git.moodle.org/gw?p=moodle.git;a=commitdiff_plain;h=32148582ff3f5a05d027ba0e034720e6733ed213 MDL-21769 fixed input validation --- diff --git a/blog/edit.php b/blog/edit.php index 82fd010bdaa..d35cb832661 100755 --- a/blog/edit.php +++ b/blog/edit.php @@ -87,6 +87,9 @@ if ($id) { print_error('notallowedtoedit', 'blog'); } $userid = $entry->userid; + $entry->subject = clean_text($entry->subject); + $entry->summary = clean_text($entry->summary, $entry->format); + } else { if (!has_capability('moodle/blog:create', $sitecontext)) { print_error('noentry', 'blog'); // manageentries is not enough for adding