From bcbf25445075e6ca5ffc7829a9cc8cc475f1a113 Mon Sep 17 00:00:00 2001 From: AlexanderDCrane <40072887+AlexanderDCrane@users.noreply.github.com> Date: Mon, 27 Aug 2018 20:29:39 -0600 Subject: [PATCH] Update groupedit.php (#3318) --- core/groups/groupedit.php | 18 +++++++++--------- 1 file changed, 9 insertions(+), 9 deletions(-) diff --git a/core/groups/groupedit.php b/core/groups/groupedit.php index 1ef25ba4e8..48bd71ffb3 100644 --- a/core/groups/groupedit.php +++ b/core/groups/groupedit.php @@ -228,7 +228,7 @@ echo " if (new_group_name != null) {\n"; echo " new_group_desc = prompt('".$text['message-new_group_description']."');\n"; echo " if (new_group_desc != null) {\n"; - echo " window.location = 'permissions_copy.php?group_name=".$group_name."&new_group_name=' + new_group_name + '&new_group_desc=' + new_group_desc;\n"; + echo " window.location = 'permissions_copy.php?group_name=".escape($group_name)."&new_group_name=' + new_group_name + '&new_group_desc=' + new_group_desc;\n"; echo " }\n"; echo " }\n"; echo " }\n"; @@ -236,7 +236,7 @@ //show the content echo "