Skip to content

Commit 7bfa14a

Browse files
committed
N°9235 - Sanitize oql_clause query parameter in universal search page
1 parent 9236449 commit 7bfa14a

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

pages/UniversalSearch.php

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -109,7 +109,7 @@
109109
$oP->SetBreadCrumbEntry($sPageId, $sLabel, '', '', 'fas fa-search', iTopWebPage::ENUM_BREADCRUMB_ENTRY_ICON_TYPE_CSS_CLASSES);
110110

111111
// Menu node
112-
$sFilter = $oFilter->ToOQL();
112+
$sFilter = utils::EscapeHtml($oFilter->ToOQL());
113113
$oP->add("\n<!-- $sFilter -->\n");
114114
}
115115
$oP->add("</div>\n");

0 commit comments

Comments
 (0)