Fixed bug #8019: missing htmlspecialchars() in adminPanel
[Packages/TYPO3.CMS.git] / t3lib / class.t3lib_tsfebeuserauth.php
index 3a4fcbb..8f78b6d 100755 (executable)
@@ -336,7 +336,7 @@ $query.'
                        $depth = $this->extGetFeAdminValue('cache','clearCacheLevels');
                        $outTable = '';
                        $this->extPageInTreeInfo = array();
-                       $this->extPageInTreeInfo[] = array($GLOBALS['TSFE']->page['uid'],$GLOBALS['TSFE']->page['title'],$depth+1);
+                       $this->extPageInTreeInfo[] = array($GLOBALS['TSFE']->page['uid'],htmlspecialchars($GLOBALS['TSFE']->page['title']),$depth+1);
                        $this->extGetTreeList($GLOBALS['TSFE']->id, $depth,0,$this->getPagePermsClause(1));
                        reset($this->extPageInTreeInfo);
                        while(list(,$row)=each($this->extPageInTreeInfo)) {
@@ -377,7 +377,7 @@ $query.'
                        $depth = $this->extGetFeAdminValue('publish','levels');
                        $outTable = '';
                        $this->extPageInTreeInfo = array();
-                       $this->extPageInTreeInfo[] = array($GLOBALS['TSFE']->page['uid'],$GLOBALS['TSFE']->page['title'],$depth+1);
+                       $this->extPageInTreeInfo[] = array($GLOBALS['TSFE']->page['uid'],htmlspecialchars($GLOBALS['TSFE']->page['title']),$depth+1);
                        $this->extGetTreeList($GLOBALS['TSFE']->id, $depth,0,$this->getPagePermsClause(1));
                        reset($this->extPageInTreeInfo);
                        while(list(,$row)=each($this->extPageInTreeInfo)) {