diff --git a/app/phrases/phrases.php b/app/phrases/phrases.php index 0c7c3de49c..c94e2b5c6f 100644 --- a/app/phrases/phrases.php +++ b/app/phrases/phrases.php @@ -113,16 +113,16 @@ require_once "resources/check_auth.php"; foreach($result as $row) { $tr_link = (permission_exists('phrase_edit')) ? "href='phrase_edit.php?id=".$row['phrase_uuid']."'" : null; echo "\n"; - echo " ".$row['phrase_name']."\n"; - echo " ".$row['phrase_language']." \n"; - echo " ".$text['label-'.$row['phrase_enabled']]." \n"; - echo " ".$row['phrase_description']." \n"; + echo " ".escape($row['phrase_name'])."\n"; + echo " ".escape($row['phrase_language'])." \n"; + echo " ".$text['label-'.escape($row['phrase_enabled'])]." \n"; + echo " ".escape($row['phrase_description'])." \n"; echo " "; if (permission_exists('phrase_edit')) { - echo "".$v_link_label_edit.""; + echo "".$v_link_label_edit.""; } if (permission_exists('phrase_delete')) { - echo "".$v_link_label_delete.""; + echo "".$v_link_label_delete.""; } echo " \n"; echo "\n";