diff --git a/app/database_transactions/database_transaction_edit.php b/app/database_transactions/database_transaction_edit.php index d31a7cbf9d..d82c514fb3 100644 --- a/app/database_transactions/database_transaction_edit.php +++ b/app/database_transactions/database_transaction_edit.php @@ -124,7 +124,7 @@ echo " ".$text['label-user_uuid']."\n"; echo " \n"; echo " \n"; - echo " ".$username."\n"; + echo " ".escape($username)."\n"; echo " \n"; echo " \n"; echo " \n"; @@ -137,7 +137,7 @@ echo " ".$text['label-transaction_code']."\n"; echo " \n"; echo " \n"; - echo " $transaction_code\n"; + echo " ".escape($transaction_code)."\n"; echo " \n"; echo " \n"; echo " \n"; @@ -145,7 +145,7 @@ echo " ".$text['label-transaction_address']."\n"; echo " \n"; echo " \n"; - echo " $transaction_address\n"; + echo " ".escape($transaction_address)."\n"; echo " \n"; echo " \n"; echo " \n"; @@ -158,7 +158,7 @@ echo " ".$text['label-transaction_type']."\n"; echo " \n"; echo " \n"; - echo " $transaction_type\n"; + echo " ".escape($transaction_type)."\n"; echo " \n"; echo " \n"; echo " \n"; @@ -166,7 +166,7 @@ echo " ".$text['label-domain']."\n"; echo " \n"; echo " \n"; - echo " ".$domain_name; + echo " ".escape($domain_name); echo " \n"; echo " \n"; echo " \n"; @@ -182,7 +182,7 @@ echo " ".$text['label-transaction_old']."\n"; echo "\n"; echo "\n"; - echo " \n"; + echo " \n"; echo "\n"; echo "\n"; @@ -191,7 +191,7 @@ echo " ".$text['label-transaction_new']."\n"; echo "\n"; echo "\n"; - echo " \n"; + echo " \n"; echo "\n"; echo "\n"; @@ -200,7 +200,7 @@ echo " ".$text['label-transaction_result']."\n"; echo "\n"; echo "\n"; - echo " \n"; + echo " \n"; echo "\n"; echo "\n"; echo "";