Posted by Summercool on 10/13/07 13:47
On Oct 13, 6:20 am, Michael Fesser <neti...@gmx.de> wrote:
>
> Fix: Use htmlspecialchars() to escape any special chars in $_GET['val']
> before printing it out. See the manual for details about the possible
> parameters.
so you think using that will make it work? i don't know why but i
tried that and it didn't work in Firefox and IE. the foo "bar" foo
will come back as foo \"bar\" foo and click once more will get more
"\".
Navigation:
[Reply to this message]
|