HTML,PHP codes in member fields

Discussion in 'Subrion Open Source CMS Core' started by spintercel, Jun 18, 2014.

  1. spintercel

    spintercel New Member

    How can I avoid html and other codes in member fields, an example is:
    toavoid.JPG

    I dont have any idea about coding but I think allow that users can put codes into a field is not secure.
  2. Vasily_B.

    Vasily_B. Project Manager

    Thanks for the report. Issue has been fixed in our local version. Going to prepare a new patch this week.
  3. spintercel

    spintercel New Member

    Can you please give me the fix? Im having a big trouble with my users..
  4. Vasily_B.

    Vasily_B. Project Manager

    Yes, we can - we have fixed this locally and it's going to be released in the 3.1.8. Now we are working on the auto upgrade patch, it will be ready within next few days.

    Thanks for the patience.
  5. spintercel

    spintercel New Member

    Hi @Vasily B. , I've upgrated 3.1.7 to 3.1.8 and this BUG is not FIXED...
  6. Andrew_G.

    Andrew_G. Staff Member

    Greetings @spintercel ,

    We are sorry for this inconvenience.

    We've finally fixed this bug and you can track the ticket here: http://dev.subrion.org/issues/1733

    In order to fix it on your site you need to extract files from attached archive:
    1) render-menu.tpl to ../templates/common/ folder
    2) layout.tpl to ../admin/templates/default/ folder

    Thanks!

    Attached Files:

    • fix.zip
      File size:
      4.2 KB
      Views:
      3
    Vasily B. and spintercel like this.
  7. spintercel

    spintercel New Member

    Oh, worked fine, excellent.

    Thank you Andrew
  8. Vasily_B.

    Vasily_B. Project Manager

    Great to see this solved. Thanks for your reports.

Share This Page