diff --git a/Theme/Backend/news-archive.tpl.php b/Theme/Backend/news-archive.tpl.php
index 903d188..a1ecd6b 100644
--- a/Theme/Backend/news-archive.tpl.php
+++ b/Theme/Backend/news-archive.tpl.php
@@ -29,16 +29,16 @@ echo $this->getData('nav')->render(); ?>
- = $this->getText('Archive') ?>
+ = $this->getHtml('Archive'); ?>
- | = $this->getText('Type'); ?>
- | = $this->getText('Title'); ?>
- | = $this->getText('Author'); ?>
- | = $this->getText('Date'); ?>
+ | = $this->getHtml('Type') ?>
+ | = $this->getHtml('Title') ?>
+ | = $this->getHtml('Author') ?>
+ | = $this->getHtml('Date') ?>
|
- | = $footerView->render(); ?>
+ | = htmlspecialchars($footerView->render(), ENT_COMPAT, 'utf-8'); ?>
|
$news) : $count++; $url = \phpOMS\Uri\UriFactory::build('{/base}/{/lang}/backend/news/article?{?}&id=' . $news->getId());
$color = 'darkred';
@@ -47,13 +47,13 @@ echo $this->getData('nav')->render(); ?>
elseif($news->getType() === \Modules\News\Models\NewsType::LINK) { $color = 'yellow'; }
?>
- | = $this->getText('TYPE' . $news->getType()); ?>
- | = $news->getTitle(); ?>
- | = $news->getCreatedBy()->getName1(); ?>
- | = $news->getPublish()->format('Y-m-d'); ?>
+ | = $this->getHtml('TYPE' . $news->getType()) ?>
+ | = htmlspecialchars($news->getTitle(), ENT_COMPAT, 'utf-8'); ?>
+ | = htmlspecialchars($news->getCreatedBy()->getName1(), ENT_COMPAT, 'utf-8'); ?>
+ | = htmlspecialchars($news->getPublish()->format('Y-m-d'), ENT_COMPAT, 'utf-8'); ?>
- |
| = $this->getText('Empty', 0, 0); ?>
+ |
| = $this->getHtml('Empty', 0, 0); ?>
|
diff --git a/Theme/Backend/news-create.tpl.php b/Theme/Backend/news-create.tpl.php
index e4628df..ab42476 100644
--- a/Theme/Backend/news-create.tpl.php
+++ b/Theme/Backend/news-create.tpl.php
@@ -27,13 +27,13 @@ echo $this->getData('nav')->render(); ?>
@@ -41,28 +41,28 @@ echo $this->getData('nav')->render(); ?>
diff --git a/Theme/Backend/news-dashboard.tpl.php b/Theme/Backend/news-dashboard.tpl.php
index 36acc94..8aa1e8f 100644
--- a/Theme/Backend/news-dashboard.tpl.php
+++ b/Theme/Backend/news-dashboard.tpl.php
@@ -24,14 +24,14 @@ echo $this->getData('nav')->render(); ?>
- = $this->getText('News') ?>
+ = $this->getHtml('News'); ?>
|
- | = $this->getText('Type'); ?>
- | = $this->getText('Title'); ?>
- | = $this->getText('Author'); ?>
- | = $this->getText('Date'); ?>
+ | = $this->getHtml('Type') ?>
+ | = $this->getHtml('Title') ?>
+ | = $this->getHtml('Author') ?>
+ | = $this->getHtml('Date') ?>
|
$news) : $count++;
$url = \phpOMS\Uri\UriFactory::build('{/base}/{/lang}/backend/news/article?{?}&id=' . $news->getId());
@@ -42,13 +42,13 @@ echo $this->getData('nav')->render(); ?>
?>
| = $news->isFeatured() ? '' : ''; ?>
- | = $this->getText('TYPE' . $news->getType()); ?>
- | = $news->getTitle(); ?>
- | = $news->getCreatedBy()->getName1(); ?>
- | = $news->getPublish()->format('Y-m-d'); ?>
+ | = $this->getHtml('TYPE' . $news->getType()) ?>
+ | = htmlspecialchars($news->getTitle(), ENT_COMPAT, 'utf-8'); ?>
+ | = htmlspecialchars($news->getCreatedBy()->getName1(), ENT_COMPAT, 'utf-8'); ?>
+ | = htmlspecialchars($news->getPublish()->format('Y-m-d'), ENT_COMPAT, 'utf-8'); ?>
- |
| = $this->getText('Empty', 0, 0); ?>
+ |
| = $this->getHtml('Empty', 0, 0); ?>
|
diff --git a/Theme/Backend/news-single.tpl.php b/Theme/Backend/news-single.tpl.php
index 30117da..680d193 100644
--- a/Theme/Backend/news-single.tpl.php
+++ b/Theme/Backend/news-single.tpl.php
@@ -22,10 +22,10 @@ echo $this->getData('nav')->render(); ?>
-
+ = htmlspecialchars($news->getTitle(), ENT_COMPAT, 'utf-8'); ?>
- = $news->getContent(); ?>
+ = htmlspecialchars($news->getContent(), ENT_COMPAT, 'utf-8'); ?>