Skip to content

Escaping template variable output #17

@ctgraham

Description

@ctgraham

PR for version 1.3.0.0 to the plugin gallery raised concerns about this unescaped template variable:

{$publication->getData('citationsRaw')|nl2br}

C.f. pkp/bootstrap3#246

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions