From a984a27fa09adf24e6b846ec3e412b8d7d95e532 Mon Sep 17 00:00:00 2001 From: Lukas Reschke Date: Mon, 18 Feb 2013 08:04:35 +0100 Subject: [PATCH 1/2] Sanitize user input --- settings/js/users.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/settings/js/users.js b/settings/js/users.js index 086b0884a3b..63a62049839 100644 --- a/settings/js/users.js +++ b/settings/js/users.js @@ -182,7 +182,7 @@ var UserList = { var addGroup = function (select, group) { $('select[multiple]').each(function (index, element) { if ($(element).find('option[value="' + group + '"]').length === 0 && select.data('msid') !== $(element).data('msid')) { - $(element).append(''); + $(element).append(''); } }) }; From 79284b8e574a21fae21ca68b9863f3205200333a Mon Sep 17 00:00:00 2001 From: Lukas Reschke Date: Mon, 18 Feb 2013 08:11:59 +0100 Subject: [PATCH 2/2] Sanitize HTML --- apps/files_external/templates/settings.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/apps/files_external/templates/settings.php b/apps/files_external/templates/settings.php index d7a4dd5150d..3709fd2e51d 100644 --- a/apps/files_external/templates/settings.php +++ b/apps/files_external/templates/settings.php @@ -18,7 +18,7 @@ $mount): ?> >