Fix some unsanitized classes
authorAndrew Garrett <werdna@users.mediawiki.org>
Fri, 17 Jul 2009 10:07:10 +0000 (10:07 +0000)
committerAndrew Garrett <werdna@users.mediawiki.org>
Fri, 17 Jul 2009 10:07:10 +0000 (10:07 +0000)
includes/ChangeTags.php

index 23329c4..ed7e29b 100644 (file)
@@ -14,7 +14,8 @@ class ChangeTags {
                $displayTags = array();
                foreach( $tags as $tag ) {
                        $displayTags[] = Xml::tags( 'span',
-                                                               array( 'class' => "mw-tag-marker mw-tag-marker-$tag" ),
+                                                               array( 'class' => "mw-tag-marker ".
+                                                                                       Sanitizer::escapeClass("mw-tag-marker-$tag") ),
                                                                self::tagDescription( $tag ) );
                        $classes[] = Sanitizer::escapeClass( "mw-tag-$tag" );
                }