diff --git a/app/phrases/phrases.php b/app/phrases/phrases.php
index 0c7c3de49c..c94e2b5c6f 100644
--- a/app/phrases/phrases.php
+++ b/app/phrases/phrases.php
@@ -113,16 +113,16 @@ require_once "resources/check_auth.php";
foreach($result as $row) {
$tr_link = (permission_exists('phrase_edit')) ? "href='phrase_edit.php?id=".$row['phrase_uuid']."'" : null;
echo "
\n";
- echo " | ".$row['phrase_name']." | \n";
- echo " ".$row['phrase_language']." | \n";
- echo " ".$text['label-'.$row['phrase_enabled']]." | \n";
- echo " ".$row['phrase_description']." | \n";
+ echo " ".escape($row['phrase_name'])." | \n";
+ echo " ".escape($row['phrase_language'])." | \n";
+ echo " ".$text['label-'.escape($row['phrase_enabled'])]." | \n";
+ echo " ".escape($row['phrase_description'])." | \n";
echo " ";
if (permission_exists('phrase_edit')) {
- echo "".$v_link_label_edit."";
+ echo "".$v_link_label_edit."";
}
if (permission_exists('phrase_delete')) {
- echo "".$v_link_label_delete."";
+ echo "".$v_link_label_delete."";
}
echo " | \n";
echo "
\n";