安全转义

This commit is contained in:
joyqi
2014-02-28 10:05:29 +08:00
parent de7b57c2cb
commit a54c3db00f

View File

@@ -62,6 +62,8 @@ class HelloWorld_Plugin implements Typecho_Plugin_Interface
*/
public static function render()
{
echo '<span class="message success">' . Typecho_Widget::widget('Widget_Options')->plugin('HelloWorld')->word . '</span>';
echo '<span class="message success">'
. htmlspecialchars(Typecho_Widget::widget('Widget_Options')->plugin('HelloWorld')->word)
. '</span>';
}
}