Просмотр исходного кода

Also escaping the alt attribute now.

git-svn-id: http://framework.zend.com/svn/framework/standard/trunk@20658 44c647ce-9c0f-0410-b52a-842ac1e357ba
kokx 16 лет назад
Родитель
Сommit
3a46faf2c5
1 измененных файлов с 3 добавлено и 1 удалено
  1. 3 1
      library/Zend/Markup/Renderer/Html/Img.php

+ 3 - 1
library/Zend/Markup/Renderer/Html/Img.php

@@ -73,8 +73,10 @@ class Zend_Markup_Renderer_Html_Img extends Zend_Markup_Renderer_Html_HtmlAbstra
             }
         }
 
-        // run the URI through htmlentities
+        // run the URI and alt through htmlentities
         $uri = htmlentities($uri, ENT_QUOTES, 'UTF-8');
+        $alt = htmlentities($alt, ENT_QUOTES, 'UTF-8');
+
 
         return "<img src=\"{$uri}\" alt=\"{$alt}\"" . Zend_Markup_Renderer_Html::renderAttributes($token) . " />";
     }