Skip to content

Commit 82fb0fa

Browse files
author
Marius Burkard
committed
- fixed username display
1 parent df62826 commit 82fb0fa

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

interface/web/sites/database_user_edit.php

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -152,7 +152,7 @@ function onBeforeUpdate() {
152152
//* Database username shall not be empty
153153
if($this->dataRecord['database_user'] == '') $app->tform->errorMessage .= $app->tform->wordbook["database_user_error_empty"].'<br />';
154154

155-
if(strlen($dbuser_prefix . $this->dataRecord['database_user']) > 16) $app->tform->errorMessage .= str_replace('{user}', $dbuser_prefix . $this->dataRecord['database_user'], $app->tform->wordbook["database_user_error_len"]).'<br />';
155+
if(strlen($dbuser_prefix . $this->dataRecord['database_user']) > 16) $app->tform->errorMessage .= str_replace('{user}', htmlentities($dbuser_prefix . $this->dataRecord['database_user'], ENT_QUOTES, 'UTF-8'), $app->tform->wordbook["database_user_error_len"]).'<br />';
156156

157157
//* Check database user against blacklist
158158
$dbuser_blacklist = array($conf['db_user'], 'mysql', 'root');
@@ -190,7 +190,7 @@ function onBeforeInsert() {
190190

191191
$this->dataRecord['database_user_prefix'] = $dbuser_prefix;
192192

193-
if(strlen($dbuser_prefix . $this->dataRecord['database_user']) > 16) $app->tform->errorMessage .= str_replace('{user}', $dbuser_prefix . $this->dataRecord['database_user'], $app->tform->wordbook["database_user_error_len"]).'<br />';
193+
if(strlen($dbuser_prefix . $this->dataRecord['database_user']) > 16) $app->tform->errorMessage .= str_replace('{user}', htmlentities($dbuser_prefix . $this->dataRecord['database_user'], ENT_QUOTES, 'UTF-8'), $app->tform->wordbook["database_user_error_len"]).'<br />';
194194

195195
//* Check database user against blacklist
196196
$dbuser_blacklist = array($conf['db_user'], 'mysql', 'root');

0 commit comments

Comments
 (0)