Skip to content

Commit 98e1159

Browse files
committed
Escape output
1 parent c1c363f commit 98e1159

File tree

1 file changed

+10
-8
lines changed
  • app/code/Magento/Customer/view/frontend/templates/address

1 file changed

+10
-8
lines changed

app/code/Magento/Customer/view/frontend/templates/address/edit.phtml

Lines changed: 10 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -19,13 +19,13 @@
1919
<?php $_dataHelper = $this->helper(\Magento\Directory\Helper\Data::class); ?>
2020
<?php $_addressHelper = $this->helper(\Magento\Customer\Helper\Address::class); ?>
2121

22-
<?php $_vatidValidationClass = $block->escapeHtmlAttr($_addressHelper->getAttributeValidationClass('vat_id')); ?>
23-
<?php $_cityValidationClass = $block->escapeHtmlAttr($_addressHelper->getAttributeValidationClass('city')); ?>
22+
<?php $_vatidValidationClass = $_addressHelper->getAttributeValidationClass('vat_id'); ?>
23+
<?php $_cityValidationClass = $_addressHelper->getAttributeValidationClass('city'); ?>
2424
<?php $_postcodeValidationClass_value = $_addressHelper->getAttributeValidationClass('postcode'); ?>
25-
<?php $_postcodeValidationClass = $block->escapeHtmlAttr($_postcodeValidationClass_value); ?>
25+
<?php $_postcodeValidationClass = $_postcodeValidationClass_value; ?>
2626
<?php $_streetValidationClass = $_addressHelper->getAttributeValidationClass('street'); ?>
2727
<?php $_streetValidationClass = trim(str_replace('required-entry', '', $_streetValidationClass)); ?>
28-
<?php $_regionValidationClass = $block->escapeHtmlAttr($_addressHelper->getAttributeValidationClass('region')); ?>
28+
<?php $_regionValidationClass = $_addressHelper->getAttributeValidationClass('region'); ?>
2929

3030
<form class="form-address-edit"
3131
action="<?= $block->escapeUrl($block->getSaveUrl()) ?>"
@@ -93,7 +93,7 @@
9393
name="vat_id"
9494
value="<?= $block->escapeHtmlAttr($block->getAddress()->getVatId()) ?>"
9595
title="<?= /* @noEscape */ $block->getAttributeData()->getFrontendLabel('vat_id') ?>"
96-
class="input-text <?= $_vatidValidationClass ?>"
96+
class="input-text <?= $block->escapeHtmlAttr($_vatidValidationClass) ?>"
9797
id="vat_id">
9898
</div>
9999
</div>
@@ -105,7 +105,7 @@
105105
name="city"
106106
value="<?= $block->escapeHtmlAttr($block->getAddress()->getCity()) ?>"
107107
title="<?= $block->escapeHtmlAttr(__('City')) ?>"
108-
class="input-text <?= $_cityValidationClass ?>"
108+
class="input-text <?= $block->escapeHtmlAttr($_cityValidationClass) ?>"
109109
id="city">
110110
</div>
111111
</div>
@@ -125,7 +125,8 @@
125125
name="region"
126126
value="<?= $block->escapeHtmlAttr($block->getRegion()) ?>"
127127
title="<?= /* @noEscape */ $_region ?>"
128-
class="input-text validate-not-number-first<?= $_regionValidationClass ?>"
128+
class="input-text validate-not-number-first
129+
<?= $block->escapeHtmlAttr($_regionValidationClass) ?>"
129130
<?= !$_displayAll ? ' disabled="disabled"' : '' ?>/>
130131
</div>
131132
</div>
@@ -139,7 +140,8 @@
139140
value="<?= $block->escapeHtmlAttr($block->getAddress()->getPostcode()) ?>"
140141
title="<?= /* @noEscape */ $block->getAttributeData()->getFrontendLabel('postcode') ?>"
141142
id="zip"
142-
class="input-text validate-zip-international <?= $_postcodeValidationClass ?>">
143+
class="input-text validate-zip-international
144+
<?= $block->escapeHtmlAttr($_postcodeValidationClass) ?>">
143145
<div role="alert" class="message warning" style="display:none">
144146
<span></span>
145147
</div>

0 commit comments

Comments
 (0)