Sanitize text of preferences strings
authorArt Cancro <ajc@citadel.org>
Thu, 5 Jul 2007 15:44:29 +0000 (15:44 +0000)
committerArt Cancro <ajc@citadel.org>
Thu, 5 Jul 2007 15:44:29 +0000 (15:44 +0000)
webcit/preferences.c

index 2c761b05c358c32fa685bb976d671b7858f2ce5e..48db2583294fd89d9557a61eb9947bafee77da77 100644 (file)
@@ -377,7 +377,9 @@ void display_preferences(void)
        wprintf("<tr><td>");
        wprintf(_("Default character set for email headers:"));
        wprintf("</td><td>");
-       wprintf("<input type=\"text\" NAME=\"default_header_charset\" MAXLENGTH=\"32\" VALUE=\"%s\">", buf);
+       wprintf("<input type=\"text\" NAME=\"default_header_charset\" MAXLENGTH=\"32\" VALUE=\"");
+       escputs(buf);
+       wprintf("\">");
        wprintf("</td></tr>");
 
        /** submit buttons */