Escape HTML characters in template subs
authorThomas Berezansky <tsbere@mvlc.org>
Thu, 11 Aug 2011 01:37:54 +0000 (21:37 -0400)
committerThomas Berezansky <tsbere@mvlc.org>
Thu, 11 Aug 2011 11:11:21 +0000 (07:11 -0400)
commit875e2d2df4c09cbec402ea90b9a499cb95e04bbe
tree33065f1311e460cfef8f26cf5842ed997beda458
parentcefc884717b4c06bc2ae767be2b391cd843833d0
Escape HTML characters in template subs

This prevents injection of random HTML from various sources.

Like bad bib records, org unit settings, patron info, etc.

Signed-off-by: Thomas Berezansky <tsbere@mvlc.org>
Open-ILS/xul/staff_client/chrome/content/util/print.js