BUG 10702 Nombres de las tareas no soportan Html tags SOLVED

- Missing validation for html entities
- Add validation for html entities
This commit is contained in:
Julio Cesar Laura
2013-02-07 03:14:25 -04:00
parent 024f506504
commit e284412920
4 changed files with 13 additions and 10 deletions

View File

@@ -252,7 +252,7 @@ var saveTaskData = function(oForm, iForm, iType)
var res = rpc.xmlhttp.responseText.parseJSON();
if (oTaskData.TAS_TITLE) {
Pm.data.db.task[getField("INDEX").value].label = Pm.data.db.task[getField("INDEX").value].object.elements.label.innerHTML = oTaskData.TAS_TITLE.replace(re2, "&");
Pm.data.db.task[getField("INDEX").value].label = Pm.data.db.task[getField("INDEX").value].object.elements.label.innerHTML = htmlentities(oTaskData.TAS_TITLE, 'ENT_QUOTES');
}
if (oTaskData.TAS_START) {