X-Git-Url: https://git.mxchange.org/?a=blobdiff_plain;f=actions%2Fsitenoticeadminpanel.php;h=72c9f9a1289486fde08783bc69e4e52c116d7250;hb=4d17d9533552ea620b83109c550e250a5c236291;hp=b1ac441af7f74e75c76c060360e23f181e37d7a4;hpb=a159352b6553cf69420739f237a7dbfaf4bc865a;p=quix0rs-gnu-social.git diff --git a/actions/sitenoticeadminpanel.php b/actions/sitenoticeadminpanel.php index b1ac441af7..72c9f9a128 100644 --- a/actions/sitenoticeadminpanel.php +++ b/actions/sitenoticeadminpanel.php @@ -27,11 +27,7 @@ * @link http://status.net/ */ -if (!defined('STATUSNET')) { - exit(1); -} - -require_once INSTALLDIR.'/extlib/htmLawed/htmLawed.php'; +if (!defined('GNUSOCIAL')) { exit(1); } /** * Update the site-wide notice text @@ -114,13 +110,9 @@ class SitenoticeadminpanelAction extends AdminPanelAction } // scrub HTML input - - $config = array( - 'safe' => 1, - 'deny_attribute' => 'id,style,on*' - ); - - $siteNotice = htmLawed($siteNotice, $config); + require_once INSTALLDIR.'/extlib/HTMLPurifier/HTMLPurifier.auto.php'; + $purifier = new HTMLPurifier(); + $siteNotice = $purifier->purify($siteNotice); } } @@ -197,7 +189,7 @@ class SiteNoticeAdminPanelForm extends AdminForm _m('BUTTON','Save'), 'submit', null, - // TRANS: Title for button to save site notice in admin panel. + // TRANS: Button title to save site notice in admin panel. _('Save site notice.') ); }