From 8c5f7f4dd8698f050ae1434611da7d47636aa9e4 Mon Sep 17 00:00:00 2001 From: Savvas Hadjigeorgiou Date: Fri, 5 Nov 2021 13:58:59 +0200 Subject: [PATCH] Escape vars on SP_Admin_CPT_Calendar Class --- includes/admin/post-types/class-sp-admin-cpt-calendar.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/includes/admin/post-types/class-sp-admin-cpt-calendar.php b/includes/admin/post-types/class-sp-admin-cpt-calendar.php index 3bbe10e9..19e8f0a6 100644 --- a/includes/admin/post-types/class-sp-admin-cpt-calendar.php +++ b/includes/admin/post-types/class-sp-admin-cpt-calendar.php @@ -82,7 +82,7 @@ class SP_Admin_CPT_Calendar extends SP_Admin_CPT { if ( ! $team_id ) continue; $team = get_post( $team_id ); if ( $team ): - echo $team->post_title; + echo esc_attr( $team->post_title ); if ( $team_id == $current_team ): echo ''; endif;