diff --git a/modules/member/member.mobile.php b/modules/member/member.mobile.php index ea2e9aa96..608b26d9a 100644 --- a/modules/member/member.mobile.php +++ b/modules/member/member.mobile.php @@ -37,7 +37,7 @@ class memberMobile extends member Context::set('identifier', $config->identifier); // Set a template file - Context::set('referer_url', $_SERVER['HTTP_REFERER']); + Context::set('referer_url', htmlspecialchars($_SERVER['HTTP_REFERER'])); $this->setTemplateFile('login_form'); } diff --git a/modules/member/member.view.php b/modules/member/member.view.php index 882cb8a24..370ec0ec7 100644 --- a/modules/member/member.view.php +++ b/modules/member/member.view.php @@ -262,7 +262,7 @@ Context::set('identifier', $config->identifier); // Set a template file - Context::set('referer_url', $_SERVER['HTTP_REFERER']); + Context::set('referer_url', htmlspecialchars($_SERVER['HTTP_REFERER'])); Context::set('act', 'procMemberLogin'); $this->setTemplateFile('login_form'); } diff --git a/themes/xe_greystone/modules/message/system_message.html b/themes/xe_greystone/modules/message/system_message.html index 86f43058f..70b9c8996 100644 --- a/themes/xe_greystone/modules/message/system_message.html +++ b/themes/xe_greystone/modules/message/system_message.html @@ -12,7 +12,7 @@