Changeset 2771


Ignore:
Timestamp:
05/13/10 11:55:24 (14 years ago)
Author:
amuller
Message:

Ticket #1070 - Corrigindo problema de script malicioso no campo to

File:
1 edited

Legend:

Unmodified
Added
Removed
  • branches/2.0/expressoMail1_2/js/draw_api.js

    r2693 r2771  
    14901490        } 
    14911491        else { 
    1492                 to.innerHTML += draw_plugin_cc(ID,toaddress_array[ID]); 
     1492                toAdd = toaddress_array[ID].toString().replace("<","&lt;"); 
     1493                toAdd = toAdd.replace(">","&gt;"); 
     1494                to.innerHTML += this.draw_plugin_cc(toAdd); 
    14931495        } 
    14941496        to.className = "header_message_field"; 
Note: See TracChangeset for help on using the changeset viewer.