Pached XSS

This commit is contained in:
pikami
2016-06-13 12:49:13 +00:00
parent 04a6be87a5
commit 3ca9efd71c
4 changed files with 7 additions and 7 deletions

View File

@@ -12,8 +12,8 @@ if(isset($uid)){
echo "<h1>This paste is private</h1>";
die();
}
echo "<h1>".$result["title"]."</h1>";
echo "<textarea class=\"form-control\" rows=\"5\" disabled=\"true\">".$result["text"]."</textarea>";
echo "<h1>".htmlspecialchars($result["title"], ENT_QUOTES, 'UTF-8')."</h1>";
echo "<textarea class=\"form-control\" rows=\"5\" disabled=\"true\">".htmlspecialchars($result["text"], ENT_QUOTES, 'UTF-8')."</textarea>";
}
else echo "Paste does not exist";
$conn = null;