Skip to content

Commit faa8f56

Browse files
committed
Merge remote-tracking branch 'origin/MAGETWO-81474' into 2.3-develop-pr1
2 parents 653b9fe + dbef4d3 commit faa8f56

File tree

10 files changed

+21
-21
lines changed

10 files changed

+21
-21
lines changed

app/code/Magento/Downloadable/view/adminhtml/templates/product/edit/downloadable/links.phtml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@
2121
<div class="admin__field" <?= !$block->isSingleStoreMode() ? ' data-config-scope="' . __('[STORE VIEW]') . '"' : '' ?>>
2222
<label class="admin__field-label" for="downloadable_links_title"><span><?= /* @escapeNotVerified */ __('Title') ?></span></label>
2323
<div class="admin__field-control">
24-
<input type="text" class="admin__control-text" id="downloadable_links_title" name="product[links_title]" value="<?= /* @escapeNotVerified */ $block->getLinksTitle() ?>" <?= ($_product->getStoreId() && $block->getUsedDefault()) ? 'disabled="disabled"' : '' ?>>
24+
<input type="text" class="admin__control-text" id="downloadable_links_title" name="product[links_title]" value="<?= $block->escapeHtml($block->getLinksTitle()) ?>" <?= ($_product->getStoreId() && $block->getUsedDefault()) ? 'disabled="disabled"' : '' ?>>
2525
<?php if ($_product->getStoreId()): ?>
2626
<div class="admin__field admin__field-option">
2727
<input id="link_title_default" class="admin__control-checkbox" type="checkbox" name="use_default[]" value="links_title" onclick="toggleValueElements(this, this.parentNode.parentNode)" <?= $block->getUsedDefault() ? 'checked="checked"' : '' ?> />
@@ -158,9 +158,9 @@ require([
158158
'<div id="downloadable_link_<%- data.id %>_file-new" class="file-row-info new-file"></div>'+
159159
'<div class="fileinput-button form-buttons">'+
160160
'<span><?= /* @escapeNotVerified */ __('Browse Files...') ?></span>' +
161-
'<input id="downloadable_link_<%- data.id %>_file" type="file" name="<?= /* @escapeNotVerified */ $block->getFileFieldName('links') ?>">' +
161+
'<input id="downloadable_link_<%- data.id %>_file" type="file" name="<?= $block->escapeHtml($block->getFileFieldName('links')) ?>">' +
162162
'<script>' +
163-
'linksUploader("#downloadable_link_<%- data.id %>_file", "<?= /* @escapeNotVerified */ $block->getUploadUrl('links') ?>"); ' +
163+
'linksUploader("#downloadable_link_<%- data.id %>_file", "<?= $block->escapeUrl($block->getUploadUrl('links')) ?>"); ' +
164164
'</scr'+'ipt>'+
165165
'</div>'+
166166
'</div>'+
@@ -184,9 +184,9 @@ require([
184184
'<div id="downloadable_link_<%- data.id %>_sample_file-new" class="file-row-info new-file"></div>'+
185185
'<div class="fileinput-button form-buttons">'+
186186
'<span><?= /* @escapeNotVerified */ __('Browse Files...') ?></span>' +
187-
'<input id="downloadable_link_<%- data.id %>_sample_file" type="file" name="<?= /* @escapeNotVerified */ $block->getFileFieldName('link_samples') ?>">' +
187+
'<input id="downloadable_link_<%- data.id %>_sample_file" type="file" name="<?= $block->escapeHtml($block->getFileFieldName('link_samples'), '"') ?>">' +
188188
'<script>'+
189-
'linksUploader("#downloadable_link_<%- data.id %>_sample_file", "<?= /* @escapeNotVerified */ $block->getUploadUrl('link_samples') ?>"); ' +
189+
'linksUploader("#downloadable_link_<%- data.id %>_sample_file", "<?= $block->escapeUrl($block->getUploadUrl('link_samples')) ?>"); ' +
190190
'</scr'+'ipt>'+
191191
'</div>'+
192192
'</div>'+

app/code/Magento/Downloadable/view/adminhtml/templates/product/edit/downloadable/samples.phtml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ $block->getConfigJson();
2121
<div class="admin__field"<?= !$block->isSingleStoreMode() ? ' data-config-scope="' . __('[STORE VIEW]') . '"' : '' ?>>
2222
<label class="admin__field-label" for="downloadable_samples_title"><span><?= /* @noEscape */ __('Title') ?></span></label>
2323
<div class="admin__field-control">
24-
<input type="text" class="admin__control-text" id="downloadable_samples_title" name="product[samples_title]" value="<?= /* @noEscape */ $block->getSamplesTitle() ?>" <?= /* @noEscape */ ($_product->getStoreId() && $block->getUsedDefault()) ? 'disabled="disabled"' : '' ?>>
24+
<input type="text" class="admin__control-text" id="downloadable_samples_title" name="product[samples_title]" value="<?= $block->escapeHtml($block->getSamplesTitle()) ?>" <?= /* @noEscape */ ($_product->getStoreId() && $block->getUsedDefault()) ? 'disabled="disabled"' : '' ?>>
2525
<?php if ($_product->getStoreId()): ?>
2626
<div class="admin__field admin__field-option">
2727
<input id="sample_title_default" class="admin__control-checkbox" type="checkbox" name="use_default[]" value="samples_title" onclick="toggleValueElements(this, this.parentNode.parentNode)" <?= /* @noEscape */ $block->getUsedDefault() ? 'checked="checked"' : '' ?> />
@@ -93,7 +93,7 @@ require([
9393
'<div id="downloadable_sample_<%- data.id %>_file-new" class="file-row-info new-file"></div>'+
9494
'<div class="fileinput-button">'+
9595
'<span><?= /* @noEscape */ __('Browse Files...') ?></span>' +
96-
'<input id="downloadable_sample_<%- data.id %>_file" type="file" name="<?= /* @noEscape */ $block->getConfig()->getFileField() ?>" data-url="<?= /* @noEscape */ $block->getConfig()->getUrl() ?>">' +
96+
'<input id="downloadable_sample_<%- data.id %>_file" type="file" name="<?= /* @noEscape */ $block->getConfig()->getFileField() ?>" data-url="<?= $block->escapeHtml($block->getConfig()->getUrl()) ?>">' +
9797
'<script>' +
9898
'/*<![CDATA[*/' +
9999
'sampleUploader("#downloadable_sample_<%- data.id %>_file"); ' +

app/code/Magento/Downloadable/view/adminhtml/templates/sales/items/column/downloadable/creditmemo/name.phtml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@
1414
<?php if ($block->getOrderOptions()): ?>
1515
<dl class="item-options">
1616
<?php foreach ($block->getOrderOptions() as $_option): ?>
17-
<dt><?= /* @escapeNotVerified */ $_option['label'] ?></dt>
17+
<dt><?= $block->escapeHtml($_option['label']) ?></dt>
1818
<dd>
1919
<?php if (isset($_option['custom_view']) && $_option['custom_view']): ?>
2020
<?= /* @escapeNotVerified */ $_option['value'] ?>
@@ -39,7 +39,7 @@ require(['prototype'], function(){
3939
<?php endif; ?>
4040
<?php if ($block->getLinks()): ?>
4141
<dl class="item-options">
42-
<dt><?= /* @escapeNotVerified */ $block->getLinksTitle() ?></dt>
42+
<dt><?= $block->escapeHtml($block->getLinksTitle()) ?></dt>
4343
<?php foreach ($block->getLinks()->getPurchasedItems() as $_link): ?>
4444
<dd><?= $block->escapeHtml($_link->getLinkTitle()) ?></dd>
4545
<?php endforeach; ?>

app/code/Magento/Downloadable/view/adminhtml/templates/sales/items/column/downloadable/invoice/name.phtml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@
1414
<?php if ($block->getOrderOptions()): ?>
1515
<dl class="item-options">
1616
<?php foreach ($block->getOrderOptions() as $_option): ?>
17-
<dt><?= /* @escapeNotVerified */ $_option['label'] ?></dt>
17+
<dt><?= $block->escapeHtml($_option['label']) ?></dt>
1818
<dd>
1919
<?php if (isset($_option['custom_view']) && $_option['custom_view']): ?>
2020
<?= /* @escapeNotVerified */ $_option['value'] ?>
@@ -39,7 +39,7 @@ require(['prototype'], function(){
3939
<?php endif; ?>
4040
<?php if ($block->getLinks()): ?>
4141
<dl class="item-options">
42-
<dt><?= /* @escapeNotVerified */ $block->getLinksTitle() ?></dt>
42+
<dt><?= $block->escapeHtml($block->getLinksTitle()) ?></dt>
4343
<?php foreach ($block->getLinks()->getPurchasedItems() as $_link): ?>
4444
<dd><?= $block->escapeHtml($_link->getLinkTitle()) ?> (<?= /* @escapeNotVerified */ $_link->getNumberOfDownloadsBought() ? $_link->getNumberOfDownloadsBought() : __('Unlimited') ?>)</dd>
4545
<?php endforeach; ?>

app/code/Magento/Downloadable/view/adminhtml/templates/sales/items/column/downloadable/name.phtml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,7 @@
1717
<?php if ($block->getOrderOptions()): ?>
1818
<dl class="item-options">
1919
<?php foreach ($block->getOrderOptions() as $_option): ?>
20-
<dt><?= /* @escapeNotVerified */ $_option['label'] ?>:</dt>
20+
<dt><?= $block->escapeHtml($_option['label']) ?>:</dt>
2121
<dd>
2222
<?php if (isset($_option['custom_view']) && $_option['custom_view']): ?>
2323
<?= /* @escapeNotVerified */ $_option['value'] ?>
@@ -42,7 +42,7 @@ require(['prototype'], function(){
4242
<?php endif; ?>
4343
<?php if ($block->getLinks()): ?>
4444
<dl class="item-options">
45-
<dt><?= /* @escapeNotVerified */ $block->getLinksTitle() ?>:</dt>
45+
<dt><?= $block->escapeHtml($block->getLinksTitle()) ?>:</dt>
4646
<?php foreach ($block->getLinks()->getPurchasedItems() as $_link): ?>
4747
<dd><?= $block->escapeHtml($_link->getLinkTitle()) ?> (<?= /* @escapeNotVerified */ $_link->getNumberOfDownloadsUsed() . ' / ' . ($_link->getNumberOfDownloadsBought() ? $_link->getNumberOfDownloadsBought() : __('U')) ?>)</dd>
4848
<?php endforeach; ?>

app/code/Magento/Downloadable/view/frontend/templates/catalog/product/links.phtml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -13,9 +13,9 @@
1313
<?php $_links = $block->getLinks(); ?>
1414
<?php $_linksLength = 0; ?>
1515
<?php $_isRequired = $block->getLinkSelectionRequired(); ?>
16-
<legend class="legend links-title"><span><?= /* @escapeNotVerified */ $block->getLinksTitle() ?></span></legend><br>
16+
<legend class="legend links-title"><span><?= $block->escapeHtml($block->getLinksTitle()) ?></span></legend><br>
1717
<div class="field downloads<?php if ($_isRequired) echo ' required' ?><?php if (!$_linksPurchasedSeparately) echo ' downloads-no-separately' ?>">
18-
<label class="label"><span><?= /* @escapeNotVerified */ $block->getLinksTitle() ?></span></label>
18+
<label class="label"><span><?= $block->escapeHtml($block->getLinksTitle()) ?></span></label>
1919
<div class="control" id="downloadable-links-list"
2020
data-mage-init='{"downloadable":{
2121
"linkElement":"input:checkbox[value]",
@@ -37,7 +37,7 @@
3737
<span><?= $block->escapeHtml($_link->getTitle()) ?></span>
3838
<?php if ($_link->getSampleFile() || $_link->getSampleUrl()): ?>
3939
<a class="sample link"
40-
href="<?= /* @escapeNotVerified */ $block->getLinkSampleUrl($_link) ?>" <?= $block->getIsOpenInNewWindow() ? 'target="_blank"' : '' ?>>
40+
href="<?= $block->escapeUrl($block->getLinkSampleUrl($_link)) ?>" <?= $block->getIsOpenInNewWindow() ? 'target="_blank"' : '' ?>>
4141
<?= /* @escapeNotVerified */ __('sample') ?>
4242
</a>
4343
<?php endif; ?>

app/code/Magento/Downloadable/view/frontend/templates/catalog/product/samples.phtml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -15,11 +15,11 @@
1515

1616
<?php if ($block->hasSamples()): ?>
1717
<dl class="items samples">
18-
<dt class="item-title samples-item-title"><?= /* @escapeNotVerified */ $block->getSamplesTitle() ?></dt>
18+
<dt class="item-title samples-item-title"><?= $block->escapeHtml($block->getSamplesTitle()) ?></dt>
1919
<?php $_samples = $block->getSamples() ?>
2020
<?php foreach ($_samples as $_sample): ?>
2121
<dd class="item samples-item">
22-
<a href="<?= /* @escapeNotVerified */ $block->getSampleUrl($_sample) ?>" <?= $block->getIsOpenInNewWindow() ? 'onclick="this.target=\'_blank\'"' : '' ?>
22+
<a href="<?= $block->escapeHtml($block->getSampleUrl($_sample)) ?>" <?= $block->getIsOpenInNewWindow() ? 'onclick="this.target=\'_blank\'"' : '' ?>
2323
class="item-link samples-item-link">
2424
<?= $block->escapeHtml($_sample->getTitle()) ?>
2525
</a>

app/code/Magento/Downloadable/view/frontend/templates/sales/order/creditmemo/items/renderer/downloadable.phtml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -39,7 +39,7 @@
3939
<?php /* downloadable */?>
4040
<?php if ($links = $block->getLinks()): ?>
4141
<dl class="item-options links">
42-
<dt><?= /* @escapeNotVerified */ $block->getLinksTitle() ?></dt>
42+
<dt><?= $block->escapeHtml($block->getLinksTitle()) ?></dt>
4343
<?php foreach ($links->getPurchasedItems() as $link): ?>
4444
<dd><?= $block->escapeHtml($link->getLinkTitle()) ?></dd>
4545
<?php endforeach; ?>

app/code/Magento/Downloadable/view/frontend/templates/sales/order/invoice/items/renderer/downloadable.phtml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -39,7 +39,7 @@
3939
<?php /* downloadable */ ?>
4040
<?php if ($links = $block->getLinks()): ?>
4141
<dl class="item-options links">
42-
<dt><?= /* @escapeNotVerified */ $block->getLinksTitle() ?></dt>
42+
<dt><?= $block->escapeHtml($block->getLinksTitle()) ?></dt>
4343
<?php foreach ($links->getPurchasedItems() as $link): ?>
4444
<dd><?= $block->escapeHtml($link->getLinkTitle()) ?></dd>
4545
<?php endforeach; ?>

app/code/Magento/Downloadable/view/frontend/templates/sales/order/items/renderer/downloadable.phtml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -40,7 +40,7 @@
4040
<?php /* downloadable */ ?>
4141
<?php if ($links = $block->getLinks()): ?>
4242
<dl class="item-options links">
43-
<dt><?= /* @escapeNotVerified */ $block->getLinksTitle() ?></dt>
43+
<dt><?= $block->escapeHtml($block->getLinksTitle()) ?></dt>
4444
<?php foreach ($links->getPurchasedItems() as $link): ?>
4545
<dd><?= $block->escapeHtml($link->getLinkTitle()) ?></dd>
4646
<?php endforeach; ?>

0 commit comments

Comments
 (0)