From 1307ef19cf174b2ec20d1e3eb3fab3ef27bb278d Mon Sep 17 00:00:00 2001 From: snipe Date: Wed, 22 Nov 2023 23:20:47 +0000 Subject: [PATCH] Escape the asset tag before passing it to the view Signed-off-by: snipe --- app/Http/Controllers/Assets/AssetsController.php | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/app/Http/Controllers/Assets/AssetsController.php b/app/Http/Controllers/Assets/AssetsController.php index aa7d182ff6..96933855fb 100755 --- a/app/Http/Controllers/Assets/AssetsController.php +++ b/app/Http/Controllers/Assets/AssetsController.php @@ -205,8 +205,9 @@ class AssetsController extends Controller } if ($success) { + \Log::debug(e($asset->asset_tag)); return redirect()->route('hardware.index') - ->with('success-unescaped', trans('admin/hardware/message.create.success_linked', ['link' => route('hardware.show', $asset->id), 'id', 'tag' => $asset->asset_tag])); + ->with('success-unescaped', trans('admin/hardware/message.create.success_linked', ['link' => route('hardware.show', $asset->id), 'id', 'tag' => e($asset->asset_tag)])); }