summaryrefslogtreecommitdiff
path: root/plugins/managesieve/managesieve.php
diff options
context:
space:
mode:
authoralecpl <alec@alec.pl>2010-02-06 12:04:51 +0000
committeralecpl <alec@alec.pl>2010-02-06 12:04:51 +0000
commite7b9591191d731f413c315d85720286d50d46f16 (patch)
tree4230e476528d925cb5c3ce110a9df16a74b9d6b0 /plugins/managesieve/managesieve.php
parent6a7d063e61f164be212bc7475aa6fb82ce1a8200 (diff)
- Fix handling of "<>" characters in filter names (#1486477)
Diffstat (limited to 'plugins/managesieve/managesieve.php')
-rw-r--r--plugins/managesieve/managesieve.php12
1 files changed, 6 insertions, 6 deletions
diff --git a/plugins/managesieve/managesieve.php b/plugins/managesieve/managesieve.php
index 677d6951e..07b39767d 100644
--- a/plugins/managesieve/managesieve.php
+++ b/plugins/managesieve/managesieve.php
@@ -7,10 +7,12 @@
* It's clickable interface which operates on text scripts and communicates
* with server using managesieve protocol. Adds Filters tab in Settings.
*
- * @version 2.1
+ * @version 2.2
* @author Aleksander 'A.L.E.C' Machniak <alec@alec.pl>
*
- * Configuration (see config.inc.php.dist):
+ * Configuration (see config.inc.php.dist)
+ *
+ * $Id$
*/
class managesieve extends rcube_plugin
@@ -276,7 +278,7 @@ class managesieve extends rcube_plugin
// filter add/edit action
else if (isset($_POST['_name']))
{
- $name = trim(get_input_value('_name', RCUBE_INPUT_POST));
+ $name = trim(get_input_value('_name', RCUBE_INPUT_POST, true));
$fid = trim(get_input_value('_fid', RCUBE_INPUT_POST));
$join = trim(get_input_value('_join', RCUBE_INPUT_POST));
@@ -485,9 +487,7 @@ class managesieve extends rcube_plugin
{
$this->rc->output->show_message('managesieve.filtersaved', 'confirmation');
$this->rc->output->add_script(sprintf("rcmail.managesieve_updatelist('%s', '%s', %d);",
- isset($new) ? 'add' : 'update', $this->form['name'], $fid), 'foot');
-// $this->rc->output->command('managesieve_updatelist', isset($new) ? 'add' : 'update', $this->form['name'], $fid);
-// $this->rc->output->send();
+ isset($new) ? 'add' : 'update', Q($this->form['name']), $fid), 'foot');
}
else
{