From d7d145b11e7766d69f26ae16490d094883b7f705 Mon Sep 17 00:00:00 2001 From: moodler Date: Sun, 29 Aug 2004 04:47:13 +0000 Subject: [PATCH] Merged from stable --- course/lib.php | 3 +++ lang/en/help/resource/parameters.html | 6 +++++- 2 files changed, 8 insertions(+), 1 deletion(-) diff --git a/course/lib.php b/course/lib.php index 8d3b0c263f..cb5d3abd31 100644 --- a/course/lib.php +++ b/course/lib.php @@ -532,6 +532,9 @@ function print_log($course, $user=0, $date=0, $order="l.time ASC", $page=0, $per $log->info = get_field($ld->mtable, $ld->field, 'id', $log->info); } + $log->url = strip_tags(urldecode($log->url)); // Some XSS protection + $log->info = strip_tags(urldecode($log->info)); // Some XSS protection + echo ''; if (! $course->category) { echo ''.$courses[$log->course].''; diff --git a/lang/en/help/resource/parameters.html b/lang/en/help/resource/parameters.html index 542b46f405..d2d6ae8caf 100644 --- a/lang/en/help/resource/parameters.html +++ b/lang/en/help/resource/parameters.html @@ -1,6 +1,10 @@

Resource Parameters

-

If you specify parameters here then they will be passed to the +

The parameter settings are completely optional, and are + only useful when you need to pass some Moodle information + to the resource file or web site.

+ +

If you define any parameters they will be passed to the resource as part of the URL (using the GET method).

The left column allows you to choose information to send, -- 2.39.5