瀏覽代碼

Prevent Javascript errors in case a name contains a quote.

git-svn-id: http://svn.code.sf.net/p/itop/code/trunk@1669 a333f486-631f-4898-b8df-5754b55c2be0
dflaven 13 年之前
父節點
當前提交
03a433324c
共有 1 個文件被更改,包括 2 次插入0 次删除
  1. 2 0
      pages/UI.php

+ 2 - 0
pages/UI.php

@@ -936,6 +936,7 @@ try
 								}					
 							}
 							$sTip .= "</ul></p>";
+							$sTip = addslashes($sTip);
 							$sReadyScript .= "$('#multi_values_$sAttCode').qtip( { content: '$sTip', show: 'mouseover', hide: 'mouseout', style: { name: 'dark', tip: 'leftTop' }, position: { corner: { target: 'rightMiddle', tooltip: 'leftTop' }} } );";
 	
 							$oDummyObj->Set($sAttCode, null);
@@ -1587,6 +1588,7 @@ EOF
 							}					
 						}
 						$sTip .= "</ul></p>";
+						$sTip = addslashes($sTip);
 						$sReadyScript .= "$('#multi_values_$sAttCode').qtip( { content: '$sTip', show: 'mouseover', hide: 'mouseout', style: { name: 'dark', tip: 'leftTop' }, position: { corner: { target: 'rightMiddle', tooltip: 'leftTop' }} } );\n";
 						$sComments .= '<div class="multi_values" id="multi_values_'.$sAttCode.'">'.count($aValues[$sAttCode]).'</div>';
 					}