Explorar o código

`fix` 修复权限页 slug,name 字段显示html字符

wujunlin %!s(int64=4) %!d(string=hai) anos
pai
achega
a945373949
Modificáronse 1 ficheiros con 3 adicións e 1 borrados
  1. 3 1
      src/Http/Controllers/PermissionController.php

+ 3 - 1
src/Http/Controllers/PermissionController.php

@@ -33,7 +33,9 @@ class PermissionController extends AdminController
             $tree->disableEditButton();
 
             $tree->branch(function ($branch) {
-                $payload = "<div class='pull-left' style='min-width:310px'><b>{$branch['name']}</b>&nbsp;&nbsp;[<span class='text-primary'>{$branch['slug']}</span>]";
+                $branchName = htmlspecialchars($branch['name']);
+                $branchSlug = htmlspecialchars($branch['slug']);
+                $payload = "<div class='pull-left' style='min-width:310px'><b>{$branchName}</b>&nbsp;&nbsp;[<span class='text-primary'>{$branchSlug}</span>]";
 
                 $path = array_filter($branch['http_path']);