From 6f4c5b51cc965410cab969de77e2e4c38e4ffd8d Mon Sep 17 00:00:00 2001 From: mh Date: Tue, 10 Dec 2002 09:40:33 +0000 Subject: [PATCH 1/1] wrap pretty much all freemarker variables (i.e the data) in encodeHTML(data..). this fixes tons of bugs in the admin, like when stuff dissappeats after quotes, etc.. also when attaching media, only show published media in the lists --- templates-dist/admin/content.template | 128 +++++++++++++++++----------------- 1 file changed, 64 insertions(+), 64 deletions(-) diff --git a/templates-dist/admin/content.template b/templates-dist/admin/content.template index e128de46..bbacb048 100755 --- a/templates-dist/admin/content.template +++ b/templates-dist/admin/content.template @@ -12,12 +12,12 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} -
+ - - - - + + + + @@ -32,7 +32,7 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.owner")}: - ${data.login_user.login} + ${encodeHTML(data.login_user.login)}   @@ -43,7 +43,7 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.import_date")}: - ${data.date} + ${encodeHTML(data.date)}   @@ -55,7 +55,7 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.lastchange_date")}: - ${data.webdb_lastchange} + ${encodeHTML(data.webdb_lastchange)}
@@ -68,7 +68,7 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.create_date")}: - ${data.webdb_create}

${lang("edit")} (yyyy-mm-dd [HH:mm]): + ${encodeHTML(data.webdb_create)}

${lang("edit")} (yyyy-mm-dd [HH:mm]):
@@ -78,11 +78,11 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} - ${lang("content.topic")}  - + ${lang("content.topic")}  +  / ${lang("content.feature")}:  - - + + @@ -91,12 +91,12 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} @@ -104,7 +104,7 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} @@ -114,7 +114,7 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} @@ -125,37 +125,37 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.title")}: 

${lang("content.subtitle")}: 
- - + +
-
- - +
+ + ${lang("content.location")}: - - + + - + ${lang("content.creator")}: - - + + -
+
@@ -163,71 +163,71 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.creator.email")}/${lang("content.creator.url")}: - - + + - - + + ${lang("content.creator.address")}/${lang("content.creator.telephone")}: - - + + - - + + ${lang("content.abstract")}: - - + + - + ${lang("content.content")}: - - + + ${lang("content.html")} checked
>  - - + + - + @@ -237,7 +237,7 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.internal")} - + @@ -246,7 +246,7 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt}     - frei : + frei : checked> @@ -263,8 +263,8 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.images")}:
- edit - ${lang("delete")} + edit + ${lang("delete")} @@ -272,7 +272,7 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.media")}:
- ${lang("content.addimage")} + ${lang("content.addimage")} @@ -280,8 +280,8 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.audio")}:
- edit - ${lang("delete")} + edit + ${lang("delete")}
@@ -289,7 +289,7 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.media")}:
- ${lang("content.addaudio")} + ${lang("content.addaudio")} @@ -297,8 +297,8 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.video")}:
- edit - ${lang("delete")} + edit + ${lang("delete")}
@@ -306,7 +306,7 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.media")}:
- ${lang("content.addvideo")} + ${lang("content.addvideo")} @@ -314,8 +314,8 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.other")}:
- edit - ${lang("delete")} + edit + ${lang("delete")}
@@ -323,7 +323,7 @@ p { font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10pt} ${lang("content.media")}:
- ${lang("content.addother")} + ${lang("content.addother")} -- 2.11.0