Browse Source

Merge pull request #1286 from wjllance/main

`fix` 修复权限页 slug,name 字段显示html字符
Jiang Qinghua 4 years ago
parent
commit
7b5f00311e
1 changed files with 3 additions and 1 deletions
  1. 3 1
      src/Http/Controllers/PermissionController.php

+ 3 - 1
src/Http/Controllers/PermissionController.php

@@ -33,7 +33,9 @@ class PermissionController extends AdminController
             $tree->disableEditButton();
 
             $tree->branch(function ($branch) {
-                $payload = "<div class='pull-left' style='min-width:310px'><b>{$branch['name']}</b>&nbsp;&nbsp;[<span class='text-primary'>{$branch['slug']}</span>]";
+                $branchName = htmlspecialchars($branch['name']);
+                $branchSlug = htmlspecialchars($branch['slug']);
+                $payload = "<div class='pull-left' style='min-width:310px'><b>{$branchName}</b>&nbsp;&nbsp;[<span class='text-primary'>{$branchSlug}</span>]";
 
                 $path = array_filter($branch['http_path']);