$wgTidyConfig instead.
* All Tidy configurations other than Remex have been hard deprecated;
future parsers will not emit compatible output for these configurations.
+* QuickTemplate::msgHtml() and BaseTemplate::msgHtml() have been deprecated
+ as they promote bad practises. I18n messages should always be properly
+ escaped.
=== Other changes in 1.32 ===
* (T198811) The following tables have had their UNIQUE indexes turned into
echo $this->getMsg( $str )->escaped();
}
+ /**
+ * @param string $str
+ * @warning You should never use this method. I18n messages should be escaped
+ * @deprecated 1.32 Use ->msg() or ->msgWiki() instead.
+ * @suppress SecurityCheck-XSS
+ * @return-taint exec_html
+ */
function msgHtml( $str ) {
+ wfDeprecated( __METHOD__, '1.32' );
echo $this->getMsg( $str )->text();
}
* @param string $name Key for the data
* @param mixed|null $default Optional default (or null)
* @return mixed The value of the data requested or the deafult
+ * @return-taint onlysafefor_htmlnoent
*/
public function get( $name, $default = null ) {
return $this->data[$name] ?? $default;
/**
* @private
* @param string $str
+ * @suppress SecurityCheck-DoubleEscaped $this->data can be either
*/
function text( $str ) {
echo htmlspecialchars( $this->data[$str] );
/**
* @private
* @param string $str
+ * @suppress SecurityCheck-XSS phan-taint-check cannot tell if $str is pre-escaped
*/
function html( $str ) {
echo $this->data[$str];
/**
* @private
* @param string $msgKey
+ * @warning You should never use this method. I18n messages should be escaped
+ * @deprecated 1.32 Use ->msg() or ->msgWiki() instead.
+ * @suppress SecurityCheck-XSS
+ * @return-taint exec_html
*/
function msgHtml( $msgKey ) {
+ wfDeprecated( __METHOD__, '1.32' );
echo wfMessage( $msgKey )->text();
}
/**
* Create a section edit link.
*
+ * @suppress SecurityCheck-XSS $links has keys of different taint types
* @param Title $nt The title being linked to (may not be the same as
* the current page, if the section is included from a template)
* @param string $section The designation of the section being pointed to,