Skip to content

Commit 1056592

Browse files
Merge pull request #1203 from Codeinwp/bugfix/503
Fixed data escaping issue with import file
2 parents 764a76e + e1ab9d9 commit 1056592

File tree

4 files changed

+4
-4
lines changed

4 files changed

+4
-4
lines changed

.github/workflows/test-e2e.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ jobs:
1414
DOCKER_FILE: docker-compose.ci.yml
1515
strategy:
1616
fail-fast: false
17-
runs-on: ubuntu-latest
17+
runs-on: ubuntu-22.04
1818
steps:
1919
- uses: actions/checkout@v2
2020
- uses: actions/setup-node@v2

.github/workflows/test-php.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -36,7 +36,7 @@ jobs:
3636

3737
phpunit:
3838
name: PHPUnit
39-
runs-on: ubuntu-latest
39+
runs-on: ubuntu-22.04
4040
services:
4141
mysql:
4242
image: mysql:5.7

classes/Visualizer/Source.php

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -429,7 +429,7 @@ private function _fetchSeriesFromEditableTable() {
429429
foreach ( $headers as $header ) {
430430
if ( ! empty( $types[ $header ] ) ) {
431431
$this->_series[] = array(
432-
'label' => $header,
432+
'label' => esc_html( wp_strip_all_tags( $header ) ),
433433
'type' => $types[ $header ],
434434
);
435435
}

classes/Visualizer/Source/Csv.php

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -97,7 +97,7 @@ private function _fetchSeries( &$handle ) {
9797
$labels[ $i ] = $this->toUTF8( $labels[ $i ] );
9898

9999
$this->_series[] = array(
100-
'label' => $labels[ $i ],
100+
'label' => esc_html( wp_strip_all_tags( $labels[ $i ] ) ),
101101
'type' => isset( $types[ $i ] ) ? $types[ $i ] : $default_type,
102102
);
103103
}

0 commit comments

Comments
 (0)