From 4d5b46e903aad1dfa23ab9a3e3a91602b1164cc7 Mon Sep 17 00:00:00 2001 From: OpenXE <> Date: Fri, 9 Feb 2024 21:00:57 +0100 Subject: [PATCH] bugfix ticket htmlentities betreff --- www/pages/ticket.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/www/pages/ticket.php b/www/pages/ticket.php index 89b20e73..4a95f0f9 100644 --- a/www/pages/ticket.php +++ b/www/pages/ticket.php @@ -716,7 +716,7 @@ class Ticket { $ticket_from_db = $this->app->DB->SelectArr($sql)[0]; - $ticket_from_db['betreff'] = htmlentities(strip_tags($ticket_from_db['betreff'])); //+ #20230916 XSS + $ticket_from_db['betreff'] = strip_tags($ticket_from_db['betreff']); foreach ($ticket_from_db as $key => $value) { $this->app->Tpl->Set(strtoupper($key), $value);