templaza / tz_portfolio_old

TZ Portfolio - CCK for Joomla Extension
http://www.templaza.com/
20 stars 46 forks source link

Repairs improperly escaped $row->attachfile in edit.php #60

Closed Boldairdev closed 10 years ago

Boldairdev commented 10 years ago

$row->attachfile, when containing a single quote, breaks the javascript on admin/views/article/tmpl/edit.php. This patch escapes the output with htmlentities.