From 71564e3e70633f35db88d3335dcf34ec6fc2bae4 Mon Sep 17 00:00:00 2001 From: Michael Hawkins Date: Thu, 12 Jan 2023 01:59:42 +0800 Subject: [PATCH] MDL-76861 blog: Ensure correct escaping applied to search string --- blog/lib.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/blog/lib.php b/blog/lib.php index d8825741307..174b610d0b4 100644 --- a/blog/lib.php +++ b/blog/lib.php @@ -903,7 +903,7 @@ function blog_get_headers($courseid=null, $groupid=null, $userid=null, $tagid=nu if (!empty($search) && has_capability('moodle/blog:search', $sitecontext)) { $headers['filters']['search'] = $search; $blogurl->param('search', $search); - $PAGE->navbar->add(get_string('searchterm', 'blog', $search), $blogurl->out()); + $PAGE->navbar->add(get_string('searchterm', 'blog', s($search)), $blogurl->out()); } }