summaryrefslogtreecommitdiffstats
path: root/common/contrib/search_autocomplete/SA-CONTRIB-2018-070-6.x-2.x.patch
blob: c0323d4fd0a588081e48ee812ea943c10e067537 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
diff --git a/search_autocomplete.module b/search_autocomplete.module
index 4e80550..feca92c 100644
--- a/search_autocomplete.module
+++ b/search_autocomplete.module
@@ -62,7 +62,7 @@ function search_autocomplete_autocomplete($string = '') {
       $sug_link                 = array_pop($sug_link_vals);
       $sug                      = html_entity_decode(check_plain($sug_elem), ENT_QUOTES);
       $sug_url                  = html_entity_decode(check_plain($sug_link), ENT_QUOTES);
-      $sug_pref                 = trim($prefix) . ' ' . $sug;
+      $sug_pref                 = check_plain(trim($prefix) . ' ' . $sug);
       $matches[trim($sug_pref)] = url(trim($sug_url));               // add the suggestion to be returned
     }
   }