Skip to content
Snippets Groups Projects
Commit f3f9bd40 authored by Brett Bieber's avatar Brett Bieber
Browse files

Escape the name when we display it on the custom profile page.

parent b8095565
No related branches found
No related tags found
No related merge requests found
......@@ -111,12 +111,12 @@ END;
$rel = 'friend';
// display the users name
$body .= "<h2><a href=\"" . $vars['entity']->getUrl() . "\" rel=\"$rel\">" . $vars['entity']->name . "</a></h2>";
$body .= "<h2><a href=\"" . $vars['entity']->getUrl() . "\" rel=\"$rel\">" . htmlentities($vars['entity']->name) . "</a></h2>";
//insert a view that can be extended
$body .= elgg_view("profile/status", array("entity" => $vars['entity']));
// display the users name
//$body .= "<h2><a href=\"" . $vars['entity']->getUrl() . "\">" . $vars['entity']->name . "</a></h2>";
//$body .= "<h2><a href=\"" . $vars['entity']->getUrl() . "\">" . htmlentities($vars['entity']->name) . "</a></h2>";
if ($vars['full'] == true) {
if ($form) {
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment