From: Niklas Laxström Date: Wed, 30 Nov 2016 13:53:11 +0000 (+0100) Subject: SpecialActiveUsers: escape group names X-Git-Tag: 1.31.0-rc.0~4690^2 X-Git-Url: https://git.cyclocoop.org/%7B%24www_url%7Dadmin/compta/banques/?a=commitdiff_plain;h=d7eb9c3366c86da51bc2182a70c1546c44f2ad22;p=lhc%2Fweb%2Fwiklou.git SpecialActiveUsers: escape group names Change-Id: I1a4d1501b8481d9f670916818fe7f75e983c2800 --- diff --git a/includes/specials/SpecialActiveusers.php b/includes/specials/SpecialActiveusers.php index 7e29be0a29..a01e9b2675 100644 --- a/includes/specials/SpecialActiveusers.php +++ b/includes/specials/SpecialActiveusers.php @@ -86,7 +86,7 @@ class SpecialActiveUsers extends SpecialPage { $groups = User::getAllGroups(); foreach ( $groups as $group ) { - $msg = User::getGroupName( $group ); + $msg = htmlspecialchars( User::getGroupName( $group ) ); $options[$msg] = $group; }