File tree Expand file tree Collapse file tree 1 file changed +3
-3
lines changed Expand file tree Collapse file tree 1 file changed +3
-3
lines changed Original file line number Diff line number Diff line change @@ -66,9 +66,9 @@ public function createAction(NodeInterface $postNode, NodeTemplate $newComment):
66
66
$ this ->throwStatus (400 , 'Your comment was NOT created - it was too short. ' );
67
67
}
68
68
69
- $ newComment ->setProperty ('text ' , filter_var ($ newComment ->getProperty ('text ' ), FILTER_SANITIZE_STRIPPED ));
70
- $ newComment ->setProperty ('author ' , filter_var ($ newComment ->getProperty ('author ' ), FILTER_SANITIZE_STRIPPED ));
71
- $ newComment ->setProperty ('emailAddress ' , filter_var ($ newComment ->getProperty ('emailAddress ' ), FILTER_SANITIZE_STRIPPED ));
69
+ $ newComment ->setProperty ('text ' , htmlspecialchars ($ newComment ->getProperty ('text ' )));
70
+ $ newComment ->setProperty ('author ' , htmlspecialchars ($ newComment ->getProperty ('author ' )));
71
+ $ newComment ->setProperty ('emailAddress ' , htmlspecialchars ($ newComment ->getProperty ('emailAddress ' )));
72
72
73
73
$ commentNode = $ postNode ->getNode ('comments ' )->createNodeFromTemplate ($ newComment , uniqid ('comment- ' , true ));
74
74
$ commentNode ->setProperty ('spam ' , false );
You can’t perform that action at this time.
0 commit comments