Re: HTML_QuickForm - Bugfix for textarea
| From: | Bertrand Mansion | Date: | Fri, 29 Nov 2002 15:00:14 +0000 |
| Subject: | Re: HTML_QuickForm - Bugfix for textarea | ||
| References: | 1 | Groups: | php.pear.dev |
| Request: | Send a blank email to pear-dev+get-11253@lists.php.net to get a copy of this message | ||
<ths@4bconsult.de> wrote :
> Bertrand Mansion schrieb in php.pear.dev:
>
>> There are certain characters that users don't want to be translated into
>> their html counterparts, so I think we should use htmlspecialchars instead
>> of htmlentities.
>
> Can you give me a sample? I'll try this.
This was reported by german users IIRC. Try to type a ü (umlaut) with
htmlentities and htmlspecialchars and see the difference.
> BTW: The reason for selecting htmlentities() was, that it is currently used
> for <input value="text" ...> (via HTML_Common).
Nobody complained about it being htmlentities so I leave it as is for now in
HTML_Common as long as frozen QuickForm elements use htmlspecialchars.
>> Now the problem comes when you want to allow html tags in your textarea and
>> store its content as such in your DB or files.
>
> I do this with htmlentities()/htmlspecialchars() and can't see any problems
> related to QuickForm. The Database contains what the user see in textarea..
I will add htmlspecialchars to textarea but before the string is
preg_replaced otherwise becomes &#10;.
Thanks,
Bertrand Mansion
Mamasam