MINOR - Added escaping for values passed by url params

This commit is contained in:
marcokernler 2011-12-20 22:17:23 +01:00
parent e24e9b4245
commit ab7e53fb6f

View File

@ -407,7 +407,7 @@ class UserDefinedForm_Controller extends Page_Controller {
// set the values passed by the url to the field
$request = $this->getRequest();
$value = $request->getVar($field->name);
$value = Convert::raw2att($request->getVar($field->name));
if(isset($value)) $field->value = $value;
$fields->push($field);