diff --git a/acp/core/ajax.plugins.php b/acp/core/ajax.plugins.php index 33ff35ad..acd98098 100644 --- a/acp/core/ajax.plugins.php +++ b/acp/core/ajax.plugins.php @@ -33,6 +33,7 @@ if(is_file('../../'.FC_CONTENT_DIR.'/plugins/'.$plugin)) { $plugin_src = file_get_contents('../../'.FC_CONTENT_DIR.'/plugins/'.$plugin); + $plugin_src = htmlentities($plugin_src,ENT_QUOTES,"UTF-8"); if(!is_writable('../../'.FC_CONTENT_DIR.'/plugins/'.$plugin)) { $message = '
'.htmlentities($plugin_src).''; + echo '
'.htmlentities($plugin_src,ENT_QUOTES,"UTF-8").''; echo '