From 64343fe186030d69ae7989667d729461ab0d07e9 Mon Sep 17 00:00:00 2001 From: Brion Vibber Date: Thu, 25 Aug 2005 04:15:16 +0000 Subject: [PATCH] Corrected fix for injection --- includes/SpecialSearch.php | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/includes/SpecialSearch.php b/includes/SpecialSearch.php index 62b207fb40..f06e18f029 100644 --- a/includes/SpecialSearch.php +++ b/includes/SpecialSearch.php @@ -35,7 +35,7 @@ require_once( 'Revision.php' ); function wfSpecialSearch( $par = '' ) { global $wgRequest, $wgUser; - $search = Sanitizer::removeHTMLtags($wgRequest->getText( 'search', $par )); + $search = $wgRequest->getText( 'search', $par ); $searchPage = new SpecialSearch( $wgRequest, $wgUser ); if( $wgRequest->getVal( 'fulltext' ) || !is_null( $wgRequest->getVal( 'offset' ) ) || @@ -224,7 +224,7 @@ class SpecialSearch { function setupPage( $term ) { global $wgOut; $wgOut->setPageTitle( wfMsg( 'searchresults' ) ); - $wgOut->setSubtitle( wfMsg( 'searchquery', $term ) ); + $wgOut->setSubtitle( htmlspecialchars( wfMsg( 'searchquery', $term ) ) ); $wgOut->setArticleRelated( false ); $wgOut->setRobotpolicy( 'noindex,nofollow' ); } -- 2.20.1