Commit f961037d authored by jan.koester's avatar jan.koester
Browse files

fixed injection

parent 6202187c
Loading
Loading
Loading
Loading
+6 −2
Original line number Diff line number Diff line
@@ -382,6 +382,10 @@ namespace blogi {

            for(int i=0; i<count; ++i){
                libhtmlpp::HtmlString youmain;
                if(req->isMobile())
                    youmain << "<li><iframe class=\"ytplayer\" width=\"320\" height=\"240\" src=\"https://www.youtube.com/embed/"
                            << dbres[i][1]  << "?autoplay=1&hd=1&origin=" << Args->config->getsiteurl() << "\" frameborder=\"0\" allowFullscreen> </iframe></li>";
                else
                    youmain << "<li><iframe class=\"ytplayer\" width=\"640\" height=\"360\" src=\"https://www.youtube.com/embed/"
                            << dbres[i][1]  << "?autoplay=1&hd=1&origin=" << Args->config->getsiteurl() << "\" frameborder=\"0\" allowFullscreen> </iframe></li>";
                youul.appendChild(youmain.parse());