manual grading: MDL-20581 Fix potential XSS problem.

Thanks to Penny for spotting this.
Merged from MOODLE_19_STABLE.
This commit is contained in:
Tim Hunt 2009-11-19 17:31:41 +00:00
parent 2d0d78befd
commit 5ffd1421a5
3 changed files with 7 additions and 4 deletions

View file

@ -65,7 +65,7 @@ $capabilities = array(
// Manually grade and comment on student attempts at a question.
'mod/quiz:grade' => array(
'riskbitmask' => RISK_SPAM | RISK_XSS,
'riskbitmask' => RISK_SPAM,
'captype' => 'write',
'contextlevel' => CONTEXT_MODULE,
'legacy' => array(
@ -77,7 +77,7 @@ $capabilities = array(
// Regrade quizzes.
'mod/quiz:regrade' => array(
'riskbitmask' => RISK_SPAM | RISK_XSS,
'riskbitmask' => RISK_SPAM,
'captype' => 'write',
'contextlevel' => CONTEXT_MODULE,
'legacy' => array(