Skip to content

Commit b3ffc89

Browse files
better escape
1 parent 2f35485 commit b3ffc89

1 file changed

Lines changed: 5 additions & 1 deletion

File tree

src/DataTableQuery.php

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -72,6 +72,10 @@ public function getDataResult()
7272

7373
foreach ($queryResult as $row)
7474
{
75+
//escaping all
76+
foreach($row as $key => $val)
77+
$row->$key = esc($val);
78+
7579
$data = [];
7680
$columns = $this->columnDefs->getColumns();
7781

@@ -98,7 +102,7 @@ public function getDataResult()
98102
break;
99103

100104
default:
101-
$value = esc($row->{$column->alias}); // Escape all other data if not used in formatting types
105+
$value = $row->{$column->alias};
102106
break;
103107
}
104108

0 commit comments

Comments
 (0)