diff --git a/modules/member/member.admin.view.php b/modules/member/member.admin.view.php index 1b65e3f96..cb9a74718 100644 --- a/modules/member/member.admin.view.php +++ b/modules/member/member.admin.view.php @@ -142,7 +142,6 @@ $security = new Security(); $security->encodeHTML('member_config..'); - $security->encodeHTML('memberInfo.user_name', 'memberInfo.nick_name', 'memberInfo.find_account_answer', 'memberInfo.description','memberInfo.group_list..'); $security->encodeHTML('extend_form_list...'); $this->setTemplateFile('member_info'); diff --git a/modules/member/member.model.php b/modules/member/member.model.php index 6b98e94ac..3b4b6c17b 100644 --- a/modules/member/member.model.php +++ b/modules/member/member.model.php @@ -254,7 +254,7 @@ // XSS defence $oSecurity = new Security($info); - $oSecurity->encodeHTML('user_name', 'nick_name', 'address.', 'group_list.'); + $oSecurity->encodeHTML('user_name', 'nick_name', 'find_account_answer', 'description', 'address.', 'group_list..'); if($extra_vars) {