Reapply "Fix #2005 XEVE-16-008 XSS 방지 및 XSS를 통해 특정 명령을 실행할 수 있는 보안취약점 해결"

This reverts commit e9f9bec9ca.
This commit is contained in:
Kijin Sung 2017-01-12 15:21:44 +09:00
parent e9f9bec9ca
commit 1577955664
8 changed files with 19 additions and 4 deletions

View file

@ -92,6 +92,8 @@ class pollAdminView extends poll
$security = new Security();
$security->encodeHTML('poll_list..title', 'poll_list..nick_name');
$security->encodeHTML('search_target', 'search_keyword');
// Set a template
$this->setTemplatePath($this->module_path.'tpl');
$this->setTemplateFile('poll_list');