summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorIvan Kohler <ivan@freeside.biz>2016-11-10 11:40:04 -0800
committerIvan Kohler <ivan@freeside.biz>2016-11-10 11:40:04 -0800
commite0b82c355d234a29f73e032403d9a022b4996779 (patch)
tree35da99511e7c8b096ccf61a473dd8430f5b799c5
parentd76c9ec573950fe8c4de29e8087a72b97c81168e (diff)
xss
-rw-r--r--httemplate/elements/table-tickets.html7
1 files changed, 4 insertions, 3 deletions
diff --git a/httemplate/elements/table-tickets.html b/httemplate/elements/table-tickets.html
index b322a5f7c..9247e58c6 100644
--- a/httemplate/elements/table-tickets.html
+++ b/httemplate/elements/table-tickets.html
@@ -57,7 +57,7 @@ View
</TD>
<TD CLASS="grid" BGCOLOR="<% $bgcolor %>">
- <A HREF=<%$href%>><% $ticket->{subject} %></A>
+ <A HREF=<%$href%>><% $ticket->{subject} |h %></A>
</TD>
<TD CLASS="grid" BGCOLOR="<% $bgcolor %>">
@@ -69,7 +69,7 @@ View
</TD>
<TD CLASS="grid" BGCOLOR="<% $bgcolor %>">
- <% $ticket->{owner} %>
+ <% $ticket->{owner} |h %>
</TD>
<TD CLASS="grid" BGCOLOR="<% $bgcolor %>">
@@ -84,12 +84,13 @@ View
<% $ticket->{content}
? $ticket->{content}.' ('.$ticket->{priority}.')'
: $ticket->{priority}
+ |h
%>
</TD>
% if ( $ss_priority ) {
<TD ALIGN="right" CLASS="grid" BGCOLOR="<% $bgcolor %>">
- <% $ticket->{"CF.{$ss_priority}"} %>
+ <% $ticket->{"CF.{$ss_priority}"} |h %>
</TD>
% }
% if ( $object->isa('FS::cust_main') ) {