From 7a72220a38bf00664de1a59dd8601d9d65ec8882 Mon Sep 17 00:00:00 2001 From: "s.samko" Date: Fri, 6 Sep 2024 14:13:47 +0100 Subject: [PATCH] Fix #10503 - Item label in dropdown list is not displayed if it contains '<' character --- include/HtmlSanitizer.php | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/include/HtmlSanitizer.php b/include/HtmlSanitizer.php index 1962982978b..467277234fc 100644 --- a/include/HtmlSanitizer.php +++ b/include/HtmlSanitizer.php @@ -126,7 +126,8 @@ public static function stripTags($dirtyHtml, $isEncoded = true) if ($isEncoded) { $dirtyHtml = from_html($dirtyHtml); } - $dirtyHtml = filter_var($dirtyHtml, FILTER_SANITIZE_STRIPPED, FILTER_FLAG_NO_ENCODE_QUOTES); + $dirtyHtml = strip_tags($dirtyHtml); + return $isEncoded ? to_html($dirtyHtml) : $dirtyHtml; }