- <input type="text" size="40" name="title" value="${data.title}"><br>
- <input type="text" size="20" name="subtitle" value="${data.subtitle}">
- <input type="text" size="20" name="edittitle" value="${data.edittitle}">
+ <input type="text" size="40" name="title" value="${encodeHTML(data.title)}"><br>
+ <input type="text" size="20" name="subtitle" value="${encodeHTML(data.subtitle)}">
+ <input type="text" size="20" name="edittitle" value="${encodeHTML(data.edittitle)}">