$r .= '</span>|';
// Add code
- $r .= '<span class="linetext">' . secureString($c) . '</span></div>';
+ $r .= '<span class="linetext">' . htmlentities($c) . '</span></div>';
}
return '<div class="code">' . $r . '</div>';
// Escape all (including null)
$str = addslashes($str);
} else {
- // Escape only double-quotes
- $str = str_replace('"', "\\\"", $str);
+ // Escape only double-quotes but prevent double-quoting
+ $str = stripslashes(str_replace('"', "\\\"", $str));
}
// Return the escaped string