From d2331ebdf7b5b21245649f1b7169c652396bcc30 Mon Sep 17 00:00:00 2001 From: Angie Byron Date: Sat, 8 Nov 2008 19:33:53 +0000 Subject: [PATCH] #324880: SA-2008-067 (#324824): Fix XSS vulberability in book administration page. --- modules/book/book.admin.inc | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/modules/book/book.admin.inc b/modules/book/book.admin.inc index be8fe7b4a1a..7cc4f8013e8 100644 --- a/modules/book/book.admin.inc +++ b/modules/book/book.admin.inc @@ -173,8 +173,8 @@ function _book_admin_table($node, &$form) { * @see book_admin_edit() */ function _book_admin_table_tree($tree, &$form) { - foreach ($tree as $key => $data) { - $form[$key] = array( + foreach ($tree as $data) { + $form['book-admin-' . $data['link']['nid']] = array( '#item' => $data['link'], 'nid' => array('#type' => 'value', '#value' => $data['link']['nid']), 'depth' => array('#type' => 'value', '#value' => $data['link']['depth']),