From 14b5cf53bca52e0bb6703819768943ec9c209a4e Mon Sep 17 00:00:00 2001 From: srosse <none@none> Date: Mon, 2 Oct 2017 10:52:12 +0200 Subject: [PATCH] OO-2636: fix wrong escaping for teachers string in rollcall view --- .../org/olat/modules/lecture/ui/TeacherRollCallController.java | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/main/java/org/olat/modules/lecture/ui/TeacherRollCallController.java b/src/main/java/org/olat/modules/lecture/ui/TeacherRollCallController.java index a25f3394d62..4d79e81dde4 100644 --- a/src/main/java/org/olat/modules/lecture/ui/TeacherRollCallController.java +++ b/src/main/java/org/olat/modules/lecture/ui/TeacherRollCallController.java @@ -153,7 +153,7 @@ public class TeacherRollCallController extends FormBasicController { List<Identity> teachers = lectureService.getTeachers(lectureBlock); for(Identity teacher:teachers) { if(sb.length() > 0) sb.append(", "); - sb.append(StringHelper.escapeJavaScript(userManager.getUserDisplayName(teacher))); + sb.append(StringHelper.escapeHtml(userManager.getUserDisplayName(teacher))); } Formatter formatter = Formatter.getInstance(getLocale()); -- GitLab