aboutsummaryrefslogtreecommitdiff
path: root/app/controllers/course/overview.php
diff options
context:
space:
mode:
authorElmar Ludwig <elmar.ludwig@uni-osnabrueck.de>2026-02-27 14:50:39 +0100
committerDavid Siegfried <david.siegfried@uni-vechta.de>2026-02-27 13:50:39 +0000
commitce679651ccf784da2e4bf57d53b57d895a4fbea3 (patch)
tree5946f87af5fcd461808285488fcfc8258afd863b /app/controllers/course/overview.php
parente752624e6621cda3e9821694d0699e2c91224746 (diff)
fix XSS issues with date formatting, fixes #6277
Closes #6277 Merge request studip/studip!4751
Diffstat (limited to 'app/controllers/course/overview.php')
-rw-r--r--app/controllers/course/overview.php2
1 files changed, 1 insertions, 1 deletions
diff --git a/app/controllers/course/overview.php b/app/controllers/course/overview.php
index fc0f441..4325de8 100644
--- a/app/controllers/course/overview.php
+++ b/app/controllers/course/overview.php
@@ -67,7 +67,7 @@ class Course_OverviewController extends AuthenticatedController
$this->next_date = $this->course->getNextDate();
$this->first_date = $this->course->getFirstDate();
$show_link = $GLOBALS["perm"]->have_studip_perm('autor', $this->course_id) && $this->course->isToolActive('schedule');
- $this->times_rooms = implode('<br>', $this->course->getAllDatesInSemester()->toStringArray());
+ $this->times_rooms = $this->course->getAllDatesInSemester()->toHtml();
//Load lecturers:
$lecturers = $this->course->getMembersWithStatus('dozent');