From 4702be4ef789dd5ddcb5e9d5e741c399c29da1e8 Mon Sep 17 00:00:00 2001 From: skodak Date: Mon, 1 Jan 2007 13:26:20 +0000 Subject: [PATCH] MDL-8028 Add separate addslashes_js function for javascript quoting --- lib/weblib.php | 1 + message/lib.php | 2 +- message/refresh.php | 9 +++------ message/send.php | 7 ++----- mod/chat/gui_header_js/jsupdate.php | 6 +++--- mod/chat/gui_header_js/jsupdated.php | 6 +++--- mod/quiz/view.php | 2 +- 7 files changed, 14 insertions(+), 19 deletions(-) diff --git a/lib/weblib.php b/lib/weblib.php index 1c7c60b5b7..ca4bbbf007 100644 --- a/lib/weblib.php +++ b/lib/weblib.php @@ -146,6 +146,7 @@ function addslashes_js($var) { if (is_string($var)) { $var = str_replace('\\', '\\\\', $var); $var = str_replace(array('\'', '"', "\n", "\r", "\0"), array('\\\'', '\\"', '\\n', '\\r', '\\0'), $var); + $var = str_replace(''; $autorefresh = '

'.get_string('pagerefreshes', 'message', $CFG->message_contacts_refresh).'

'; - $autorefresh = addslashes($autorefresh); // js escaping + $autorefresh = addslashes_js($autorefresh); // js escaping // gracefully degrade JS autorefresh echo '