From a710c28d38a18da172b797955c5672ab00d47ac6 Mon Sep 17 00:00:00 2001 From: Jakub Vrana Date: Sat, 1 Mar 2014 10:33:17 -0800 Subject: [PATCH] Escape server info --- adminer/include/connect.inc.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/adminer/include/connect.inc.php b/adminer/include/connect.inc.php index d50dc8fa..5bfe947e 100644 --- a/adminer/include/connect.inc.php +++ b/adminer/include/connect.inc.php @@ -23,7 +23,7 @@ function connect_error() { echo "$val\n"; } } - echo "

" . lang('%s version: %s through PHP extension %s', $drivers[DRIVER], "$connection->server_info", "$connection->extension") . "\n"; + echo "

" . lang('%s version: %s through PHP extension %s', $drivers[DRIVER], "" . h($connection->server_info) . "", "$connection->extension") . "\n"; echo "

" . lang('Logged as: %s', "" . h(logged_user()) . "") . "\n"; $databases = $adminer->databases(); if ($databases) {