From 6d90d35d253dc3218ec5143120334248f0dce3de Mon Sep 17 00:00:00 2001 From: Hypolite Petovan Date: Thu, 13 Dec 2018 22:35:12 -0500 Subject: [PATCH] Enable Smarty default HTML escaping --- src/Render/FriendicaSmarty.php | 2 ++ 1 file changed, 2 insertions(+) diff --git a/src/Render/FriendicaSmarty.php b/src/Render/FriendicaSmarty.php index 8ecea05186..413d746dcf 100644 --- a/src/Render/FriendicaSmarty.php +++ b/src/Render/FriendicaSmarty.php @@ -42,6 +42,8 @@ class FriendicaSmarty extends Smarty $this->left_delimiter = Renderer::getTemplateLeftDelimiter('smarty3'); $this->right_delimiter = Renderer::getTemplateRightDelimiter('smarty3'); + $this->escape_html = true; + // Don't report errors so verbosely $this->error_reporting = E_ALL & ~E_NOTICE; }