修复 XSS漏洞(补充)

This commit is contained in:
康盛Discuz! 2017-10-20 23:06:22 +08:00
parent 19fd20f742
commit a90b72af51
1 changed files with 1 additions and 1 deletions

View File

@ -37,7 +37,7 @@
<!--{eval unset($memberlist[0]);}-->
<!--{loop $memberlist $member}-->
<li>
<a href="home.php?mod=space&uid=$member[uid]&do=profile" target="_blank" id="bid_$member[uid]" {if $member[note]} onmouseover="showTip(this)" tip="$member[username]: $member[note]"{/if}>$member[avatar]</a>
<a href="home.php?mod=space&uid=$member[uid]&do=profile" target="_blank" id="bid_$member[uid]" {if $member[note]} onmouseover="showTip(this)" tip="$member[username]: {echo htmlspecialchars($member[note])}"{/if}>$member[avatar]</a>
</li>
<!--{/loop}-->
</ul>