diff --git a/app/pin_numbers/pin_numbers.php b/app/pin_numbers/pin_numbers.php index 3b232bcf44..74a68c184f 100644 --- a/app/pin_numbers/pin_numbers.php +++ b/app/pin_numbers/pin_numbers.php @@ -140,7 +140,7 @@ if (is_array($result)) { foreach($result as $row) { if (permission_exists('pin_number_edit')) { - $tr_link = "href='pin_number_edit.php?id=".$row['pin_number_uuid']."'"; + $tr_link = "href='pin_number_edit.php?id=".escape($row['pin_number_uuid'])."'"; } echo "