From ba62392056b3f19c53f9390a3ea49147d160d7a2 Mon Sep 17 00:00:00 2001 From: =?utf8?q?Tim=20D=C3=BCsterhus?= Date: Sat, 1 Mar 2014 21:56:13 +0100 Subject: [PATCH] Properly escape title in rssFeed.tpl --- com.woltlab.wcf/templates/rssFeed.tpl | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/com.woltlab.wcf/templates/rssFeed.tpl b/com.woltlab.wcf/templates/rssFeed.tpl index 86994a87f5..04dc55a78a 100644 --- a/com.woltlab.wcf/templates/rssFeed.tpl +++ b/com.woltlab.wcf/templates/rssFeed.tpl @@ -6,7 +6,7 @@ xmlns:slash="http://purl.org/rss/1.0/modules/slash/" > - <![CDATA[{if $title}{@$title} - {/if}{@PAGE_TITLE|language|escapeCDATA}]]> + <![CDATA[{if $title}{@$title|escapeCDATA} - {/if}{@PAGE_TITLE|language|escapeCDATA}]]> {@$__wcf->language->getFixedLanguageCode()} -- 2.20.1