FIX: extrafield input for varchar was not working with special char

within (ie double quotes)
This commit is contained in:
altatof 2017-01-13 15:37:33 +01:00
parent 983efdd6ee
commit 487b5b25db

View File

@ -763,7 +763,7 @@ class ExtraFields
}
elseif ($type == 'phone')
{
$out='<input type="text" class="flat" name="'.$keysuffix.'options_'.$key.$keyprefix.'" size="20" value="'.$value.'" '.($moreparam?$moreparam:'').'>';
$out='<input type="text" class="flat" name="'.$keysuffix.'options_'.$key.$keyprefix.'" size="20" value="'.htmlentities($value).'" '.($moreparam?$moreparam:'').'>';
}
elseif ($type == 'price')
{