}
$id = $nt->getArticleId();
- $wgOut->setSubtitle( wfMsg( 'rclsub', $nt->getPrefixedText() ) );
+ $wgOut->setSubtitle( htmlspecialchars( wfMsg( 'rclsub', $nt->getPrefixedText() ) ) );
if ( ! $days ) {
$days = $wgUser->getOption( 'rcdays' );
$fname = 'wfSpecialWatchlist';
$wgOut->setPagetitle( wfMsg( 'watchlist' ) );
- $sub = wfMsg( 'watchlistsub', $wgUser->getName() );
+ $sub = htmlspecialchars( wfMsg( 'watchlistsub', $wgUser->getName() ) );
$wgOut->setSubtitle( $sub );
$wgOut->setRobotpolicy( 'noindex,nofollow' );