Skip to content

Commit f15e4b7

Browse files
committed
phpcs
1 parent 5c00602 commit f15e4b7

10 files changed

+188
-188
lines changed

admin.php

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ function mfbfw_options_page() {
99
<div id="icon-plugins" class="icon32"></div>
1010
<div class="inlined">
1111
<div id="pluginDescription">
12-
<h1><?php printf( __( 'Fancybox for WordPress (version %s)', 'mfbfw' ), FBFW_VERSION ); ?></h1>
12+
<h1><?php printf( esc_html__( 'Fancybox for WordPress (version %s)', 'mfbfw' ), esc_html( FBFW_VERSION ) ); ?></h1>
1313
<p class="about-text">Seamlessly integrates FancyBox into your blog: Upload, activate, and you’re done. Additional configuration optional.</p>
1414
</div>
1515
</div>
@@ -22,12 +22,12 @@ function mfbfw_options_page() {
2222

2323
<div id="fbfwTabs">
2424
<ul class="nav-tab-wrapper wp-clearfix">
25-
<li><a href="#fbfw-appearance"><?php _e( 'Appearance', 'mfbfw' ); ?></a></li>
26-
<li><a href="#fbfw-animations"><?php _e( 'Animations', 'mfbfw' ); ?></a></li>
27-
<li><a href="#fbfw-behaviour"><?php _e( 'Behaviour', 'mfbfw' ); ?></a></li>
28-
<li><a href="#fbfw-galleries"><?php _e( 'Galleries', 'mfbfw' ); ?></a></li>
29-
<li><a href="#fbfw-other"><?php _e( 'Misc.', 'mfbfw' ); ?></a></li>
30-
<li><a href="#fbfw-support" style="color:green;"><?php _e( 'Support', 'mfbfw' ); ?></a></li>
25+
<li><a href="#fbfw-appearance"><?php esc_html_e( 'Appearance', 'mfbfw' ); ?></a></li>
26+
<li><a href="#fbfw-animations"><?php esc_html_e( 'Animations', 'mfbfw' ); ?></a></li>
27+
<li><a href="#fbfw-behaviour"><?php esc_html_e( 'Behaviour', 'mfbfw' ); ?></a></li>
28+
<li><a href="#fbfw-galleries"><?php esc_html_e( 'Galleries', 'mfbfw' ); ?></a></li>
29+
<li><a href="#fbfw-other"><?php esc_html_e( 'Misc.', 'mfbfw' ); ?></a></li>
30+
<li><a href="#fbfw-support" style="color:green;"><?php esc_html_e( 'Support', 'mfbfw' ); ?></a></li>
3131
</ul>
3232

3333
<div id="fbfw-appearance">

class-fancybox-review.php

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -71,7 +71,7 @@ public function five_star_wp_rate_notice() {
7171

7272
?>
7373
<div id="<?php echo esc_attr($this->slug) ?>-epsilon-review-notice" class="notice notice-success is-dismissible" style="margin-top:30px;">
74-
<p><?php echo sprintf( esc_html( $this->messages['notice'] ), $this->value ) ; ?></p>
74+
<p><?php echo sprintf( esc_html( $this->messages['notice'] ), esc_html( $this->value ) ) ; ?></p>
7575
<p class="actions">
7676
<a id="epsilon-rate" href="<?php echo esc_url( $url ) ?>" target="_blank" class="button button-primary epsilon-review-button">
7777
<?php echo esc_html( $this->messages['rate'] ); ?>
@@ -137,8 +137,8 @@ public function ajax_script() {
137137
data['epsilon-review'] = 1;
138138
}
139139

140-
$.post( '<?php echo admin_url( 'admin-ajax.php' ) ?>', data, function( response ) {
141-
$( '#<?php echo $this->slug ?>-epsilon-review-notice' ).slideUp( 'fast', function() {
140+
$.post( '<?php echo esc_url( admin_url( 'admin-ajax.php' ) ) ?>', data, function( response ) {
141+
$( '#<?php echo esc_html( $this->slug ) ?>-epsilon-review-notice' ).slideUp( 'fast', function() {
142142
$( this ).remove();
143143
} );
144144
});
@@ -153,8 +153,8 @@ public function ajax_script() {
153153
check: 'epsilon-later'
154154
};
155155

156-
$.post( '<?php echo admin_url( 'admin-ajax.php' ) ?>', data, function( response ) {
157-
$( '#<?php echo $this->slug ?>-epsilon-review-notice' ).slideUp( 'fast', function() {
156+
$.post( '<?php echo esc_url( admin_url( 'admin-ajax.php' ) ) ?>', data, function( response ) {
157+
$( '#<?php echo esc_html( $this->slug ) ?>-epsilon-review-notice' ).slideUp( 'fast', function() {
158158
$( this ).remove();
159159
} );
160160
});

fancybox.php

Lines changed: 30 additions & 30 deletions
Original file line numberDiff line numberDiff line change
@@ -288,22 +288,22 @@ function mfbfw_init() {
288288

289289

290290
echo '
291-
<!-- Fancybox for WordPress v' . $mfbfw_version . ' -->
291+
<!-- Fancybox for WordPress v' . esc_html( $mfbfw_version ) . ' -->
292292
<style type="text/css">
293-
.fancybox-slide--image .fancybox-content{background-color: ' . $mfbfw['paddingColor'] . '}'.$hideCaption.'
293+
.fancybox-slide--image .fancybox-content{background-color: ' . esc_html( $mfbfw['paddingColor'] ) . '}'. esc_attr( $hideCaption ).'
294294
' . ( isset( $mfbfw['overlayShow'] ) ? '' : 'div.fancybox-bg{background:transparent !important;}' ) . '
295-
' . 'img.fancybox-image{border-width:' . $mfbfw['padding'] . 'px;border-color:' . $mfbfw['paddingColor'] . ';border-style:solid;}' . '
296-
' . ( isset( $mfbfw['overlayColor'] ) && $mfbfw['overlayColor'] ? 'div.fancybox-bg{background-color:' . hexTorgba( $mfbfw['overlayColor'], $mfbfw['overlayOpacity'] ) . ';opacity:1 !important;}' : '' ) . ( isset( $mfbfw['paddingColor'] ) && $mfbfw['paddingColor'] ? 'div.fancybox-content{border-color:' . $mfbfw['paddingColor'] . '}' : '' ) . '
297-
' . ( isset( $mfbfw['paddingColor'] ) && $mfbfw['paddingColor'] && $mfbfw['titlePosition'] == 'inside' ? 'div#fancybox-title{background-color:' . $mfbfw['paddingColor'] . '}' : '' ) . '
298-
div.fancybox-content{background-color:' . $mfbfw['paddingColor'] . ( isset( $mfbfw['border'] ) && $mfbfw['border'] ? ';border:1px solid ' . $mfbfw['borderColor'] : '' ) . '}
299-
' . ( isset( $mfbfw['titleColor'] ) && $mfbfw['titleColor'] && $mfbfw['titlePosition'] == 'inside' ? 'div#fancybox-title-inside{color:' . $mfbfw['titleColor'] . '}' : '' ) . '
300-
' . ( isset( $mfbfw['borderRadius'] ) ? 'div.fancybox-content{border-radius:' . $mfbfw['borderRadius'] . 'px}' : '' ) . '
301-
' . ( isset( $mfbfw['borderRadiusInner'] ) ? 'img#fancybox-img{border-radius:' . $mfbfw['borderRadiusInner'] . 'px}' : '' ) . '
302-
' . ( isset( $mfbfw['shadowSize'] ) && $mfbfw['shadowOffset'] && $mfbfw['shadowOpacity'] ? 'div.fancybox-content{box-shadow:0 ' . $mfbfw['shadowOffset'] . 'px ' . $mfbfw['shadowSize'] . 'px rgba(0,0,0,' . $mfbfw['shadowOpacity'] . ')}' : '' ) . '
295+
' . 'img.fancybox-image{border-width:' . esc_html( $mfbfw['padding'] ) . 'px;border-color:' . esc_html( $mfbfw['paddingColor'] ) . ';border-style:solid;}' . '
296+
' . ( isset( $mfbfw['overlayColor'] ) && $mfbfw['overlayColor'] ? 'div.fancybox-bg{background-color:' . esc_attr( hexTorgba( $mfbfw['overlayColor'], $mfbfw['overlayOpacity'] ) ) . ';opacity:1 !important;}' : '' ) . ( isset( $mfbfw['paddingColor'] ) && $mfbfw['paddingColor'] ? 'div.fancybox-content{border-color:' . esc_html( $mfbfw['paddingColor'] ) . '}' : '' ) . '
297+
' . ( isset( $mfbfw['paddingColor'] ) && $mfbfw['paddingColor'] && $mfbfw['titlePosition'] == 'inside' ? 'div#fancybox-title{background-color:' . esc_html( $mfbfw['paddingColor'] ) . '}' : '' ) . '
298+
div.fancybox-content{background-color:' . esc_html( $mfbfw['paddingColor'] ) . ( isset( $mfbfw['border'] ) && $mfbfw['border'] ? ';border:1px solid ' . esc_html( $mfbfw['borderColor'] ) : '' ) . '}
299+
' . ( isset( $mfbfw['titleColor'] ) && $mfbfw['titleColor'] && $mfbfw['titlePosition'] == 'inside' ? 'div#fancybox-title-inside{color:' . esc_html( $mfbfw['titleColor'] ) . '}' : '' ) . '
300+
' . ( isset( $mfbfw['borderRadius'] ) ? 'div.fancybox-content{border-radius:' . esc_html( $mfbfw['borderRadius'] ) . 'px}' : '' ) . '
301+
' . ( isset( $mfbfw['borderRadiusInner'] ) ? 'img#fancybox-img{border-radius:' . esc_html( $mfbfw['borderRadiusInner'] ) . 'px}' : '' ) . '
302+
' . ( isset( $mfbfw['shadowSize'] ) && $mfbfw['shadowOffset'] && $mfbfw['shadowOpacity'] ? 'div.fancybox-content{box-shadow:0 ' . esc_html( $mfbfw['shadowOffset'] ) . 'px ' . esc_html( $mfbfw['shadowSize'] ) . 'px rgba(0,0,0,' . esc_html( $mfbfw['shadowOpacity'] ) . ')}' : '' ) . '
303303
' . ( isset( $mfbfw['titleShow'] ) ? 'div.fancybox-caption p.caption-title{display:inline-block}' : 'div.fancybox-custom-caption p.caption-title{display:none}div.fancybox-caption{display:none;}' ) . '
304-
' . ( isset( $mfbfw['titleSize'] ) ? 'div.fancybox-caption p.caption-title{font-size:' . $mfbfw['titleSize'] . 'px}' : 'div.fancybox-caption p.caption-title{font-size:14px}' ) . '
305-
' . ( isset( $mfbfw['titleColor'] ) && $mfbfw['titlePosition'] == 'inside' ? 'div.fancybox-caption p.caption-title{color:' . $mfbfw['titleColor'] . '}' : 'div.fancybox-caption p.caption-title{color:#fff}' ) . '
306-
' . ( isset( $mfbfw['titlePosition'] ) ? 'div.fancybox-caption {color:' . $mfbfw['titleColor'] . '}' : 'div.fancybox-caption p.caption-title{color:#333333}' ) . $captionPosition .$close_button.'
304+
' . ( isset( $mfbfw['titleSize'] ) ? 'div.fancybox-caption p.caption-title{font-size:' . esc_html( $mfbfw['titleSize'] ) . 'px}' : 'div.fancybox-caption p.caption-title{font-size:14px}' ) . '
305+
' . ( isset( $mfbfw['titleColor'] ) && $mfbfw['titlePosition'] == 'inside' ? 'div.fancybox-caption p.caption-title{color:' . esc_html( $mfbfw['titleColor'] ) . '}' : 'div.fancybox-caption p.caption-title{color:#fff}' ) . '
306+
' . ( isset( $mfbfw['titlePosition'] ) ? 'div.fancybox-caption {color:' . esc_html( $mfbfw['titleColor'] ) . '}' : 'div.fancybox-caption p.caption-title{color:#333333}' ) . esc_attr( $captionPosition ) . esc_attr( $close_button ).'
307307
</style>';
308308
?>
309309
<script type="text/javascript">
@@ -319,7 +319,7 @@ function mfbfw_init() {
319319
}
320320

321321
jQuery.fn.getTitle = function () { // Copy the title of every IMG tag and add it to its parent A so that fancybox can show titles
322-
<?php echo $mfbfw['copyTitleFunction'] ?>
322+
<?php echo wp_kses_post( $mfbfw['copyTitleFunction'] ) ?>
323323
}
324324

325325
// Supported file extensions
@@ -411,22 +411,22 @@ function mfbfw_init() {
411411
<?php
412412
} else { ?>
413413
/* Custom Expression */
414-
<?php echo $mfbfw['customExpression']; ?>
414+
<?php echo wp_kses_post( $mfbfw['customExpression'] ); ?>
415415
<?php } ?>
416416

417417
// Call fancybox and apply it on any link with a rel atribute that starts with "fancybox", with the options set on the admin panel
418418
jQuery("a.fancyboxforwp").fancyboxforwp({
419419
loop: <?php echo(isset( $mfbfw['cyclic'] ) && $mfbfw['cyclic'] ? 'true' : 'false') ?>,
420420
smallBtn: <?php echo(isset( $mfbfw['showCloseButton'] ) && $mfbfw['showCloseButton'] ? 'true' : 'false') ?>,
421421
zoomOpacity: <?php echo(isset( $mfbfw['zoomOpacity'] ) && $mfbfw['zoomOpacity'] ? '"auto"' : 'false') ?>,
422-
animationEffect: "<?php echo $mfbfw['transitionIn'] ?>",
423-
animationDuration: <?php echo $mfbfw['zoomSpeedIn'] ?>,
424-
transitionEffect: "<?php echo $mfbfw['transitionEffect'] ?>",
425-
transitionDuration: "<?php echo $mfbfw['zoomSpeedChange'] ?>",
422+
animationEffect: "<?php echo esc_attr( $mfbfw['transitionIn'] )?>",
423+
animationDuration: <?php echo esc_attr( $mfbfw['zoomSpeedIn'] )?>,
424+
transitionEffect: "<?php echo esc_attr( $mfbfw['transitionEffect'] )?>",
425+
transitionDuration: "<?php echo esc_attr( $mfbfw['zoomSpeedChange'] )?>",
426426
overlayShow: <?php echo(isset( $mfbfw['overlayShow'] ) && $mfbfw['overlayShow'] ? 'true' : 'false') ?>,
427-
overlayOpacity: "<?php echo $mfbfw['overlayOpacity'] ?>",
427+
overlayOpacity: "<?php echo esc_attr( $mfbfw['overlayOpacity'] )?>",
428428
titleShow: <?php echo(isset( $mfbfw['titleShow'] ) && $mfbfw['titleShow'] ? 'true' : 'false') ?>,
429-
titlePosition: "<?php echo $mfbfw['titlePosition'] ?>",
429+
titlePosition: "<?php echo esc_attr( $mfbfw['titlePosition'] )?>",
430430
keyboard: <?php echo(isset( $mfbfw['enableEscapeButton'] ) && $mfbfw['enableEscapeButton'] ? 'true' : 'false') ?>,
431431
showCloseButton: <?php echo(isset( $mfbfw['showCloseButton'] ) && $mfbfw['showCloseButton'] ? 'true' : 'false') ?>,
432432
arrows: <?php echo(isset( $mfbfw['showNavArrows'] ) && $mfbfw['showNavArrows'] ? 'true' : 'false') ?>,
@@ -443,21 +443,21 @@ function mfbfw_init() {
443443
wheel: <?php echo(isset( $mfbfw['mouseWheel'] ) && $mfbfw['mouseWheel'] ? 'true' : 'false') ?>,
444444
toolbar: <?php echo(isset( $mfbfw['showToolbar'] ) && $mfbfw['showToolbar'] ? 'true' : 'false') ?>,
445445
preventCaptionOverlap: true,
446-
onInit: <?php echo(isset( $mfbfw['callbackEnable'], $mfbfw['callbackOnStart'] ) && $mfbfw['callbackEnable'] && $mfbfw['callbackOnStart'] ? $mfbfw['callbackOnStart'] . ',' : 'function() { },') ?>
446+
onInit: <?php echo(isset( $mfbfw['callbackEnable'], $mfbfw['callbackOnStart'] ) && $mfbfw['callbackEnable'] && $mfbfw['callbackOnStart'] ? wp_kses_post( $mfbfw['callbackOnStart'] ) . ',' : 'function() { },') ?>
447447
onDeactivate
448-
: <?php echo(isset( $mfbfw['callbackEnable'], $mfbfw['callbackOnCancel'] ) && $mfbfw['callbackEnable'] && $mfbfw['callbackOnCancel'] ? $mfbfw['callbackOnCancel'] . ',' : 'function() { },') ?>
449-
beforeClose: <?php echo(isset( $mfbfw['callbackEnable'], $mfbfw['callbackOnCleanup'] ) && $mfbfw['callbackEnable'] && $mfbfw['callbackOnCleanup'] ? $mfbfw['callbackOnCleanup'] . ',' : 'function() { },') ?>
450-
afterShow: <?php echo(isset( $mfbfw['callbackEnable'], $mfbfw['callbackOnComplete'] ) && $mfbfw['callbackEnable'] && $mfbfw['callbackOnComplete'] ? $mfbfw['callbackOnComplete'] . ',' : ( isset( $mfbfw['zoomOnClick'] ) ? 'function(instance) { jQuery( ".fancybox-image" ).on("click", function( ){ ( instance.isScaledDown() ) ? instance.scaleToActual() : instance.scaleToFit() }) },' : 'function() {},' ) )?>
451-
afterClose: <?php echo(isset( $mfbfw['callbackEnable'], $mfbfw['callbackOnClose'] ) && $mfbfw['callbackEnable'] && $mfbfw['callbackOnClose'] ? $mfbfw['callbackOnClose'] . ',' : 'function() { },') ?>
452-
caption : <?php echo $caption ?>,
453-
afterLoad : <?php echo $afterLoad ?>,
454-
<?php echo $frameSize ?>
448+
: <?php echo(isset( $mfbfw['callbackEnable'], $mfbfw['callbackOnCancel'] ) && $mfbfw['callbackEnable'] && $mfbfw['callbackOnCancel'] ? wp_kses_post( $mfbfw['callbackOnCancel'] ) . ',' : 'function() { },') ?>
449+
beforeClose: <?php echo(isset( $mfbfw['callbackEnable'], $mfbfw['callbackOnCleanup'] ) && $mfbfw['callbackEnable'] && $mfbfw['callbackOnCleanup'] ? wp_kses_post( $mfbfw['callbackOnCleanup'] ) . ',' : 'function() { },') ?>
450+
afterShow: <?php echo(isset( $mfbfw['callbackEnable'], $mfbfw['callbackOnComplete'] ) && $mfbfw['callbackEnable'] && $mfbfw['callbackOnComplete'] ? wp_kses_post( $mfbfw['callbackOnComplete'] ) . ',' : ( isset( $mfbfw['zoomOnClick'] ) ? 'function(instance) { jQuery( ".fancybox-image" ).on("click", function( ){ ( instance.isScaledDown() ) ? instance.scaleToActual() : instance.scaleToFit() }) },' : 'function() {},' ) )?>
451+
afterClose: <?php echo(isset( $mfbfw['callbackEnable'], $mfbfw['callbackOnClose'] ) && $mfbfw['callbackEnable'] && $mfbfw['callbackOnClose'] ? wp_kses_post( $mfbfw['callbackOnClose'] ) . ',' : 'function() { },') ?>
452+
caption : <?php echo wp_kses_post( $caption ) ?>,
453+
afterLoad : <?php echo wp_kses_post( $afterLoad ) ?>,
454+
<?php echo wp_kses_post( $frameSize ) ?>
455455
})
456456
;
457457

458458
<?php if ( isset( $mfbfw['extraCallsEnable'] ) && $mfbfw['extraCallsEnable'] ) {
459459
echo "/* Extra Calls */";
460-
echo $mfbfw['extraCallsData'];
460+
echo wp_kses_post( $mfbfw['extraCallsData'] );
461461
} ?>
462462
})
463463
</script>

lib/admin-head.php

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
<?php
22

3-
if ( isset($_REQUEST['reset']) && $_REQUEST['reset'] )
3+
if ( isset($_REQUEST['reset']) && sanitize_text_field( wp_unslash( $_REQUEST['reset'] ) ) )
44
echo '<div id="message" class="updated fade"><p><strong>FancyBox for WordPress settings have been reset.</strong></p></div>';
55

66

lib/admin-tab-animations.php

Lines changed: 14 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,13 @@
1-
<h3><?php _e( 'Animation Settings <span style="color:green">(basic)</span>', 'mfbfw' ); ?></h3>
1+
<h3><?php echo wp_kses_post( __( 'Animation Settings <span style="color:green">(basic)</span>', 'mfbfw' ) ); ?></h3>
22

3-
<p><?php _e( 'These settings control the animations when opening and closing Fancybox, and the optional easing effects.', 'mfbfw' ); ?></p>
3+
<p><?php esc_html_e( 'These settings control the animations when opening and closing Fancybox, and the optional easing effects.', 'mfbfw' ); ?></p>
44

55
<table class="form-table fancy-table" style="clear:none;">
66
<tbody>
77
<tr valign="top">
8-
<th scope="row"><?php _e( 'Zoom Options', 'mfbfw' ); ?>
8+
<th scope="row"><?php esc_html_e( 'Zoom Options', 'mfbfw' ); ?>
99
<span class="tooltip-right"
10-
data-tooltip="<?php _e( 'Change content transparency during zoom animations (default: on)', 'mfbfw' ); ?>">
10+
data-tooltip="<?php esc_html_e( 'Change content transparency during zoom animations (default: on)', 'mfbfw' ); ?>">
1111
<i class="dashicons dashicons-editor-help"></i>
1212
</span>
1313
</th>
@@ -30,58 +30,58 @@
3030
</td>
3131
</tr>
3232
<tr valign="top">
33-
<th scope="row"><?php _e( 'Animation Type', 'mfbfw' ); ?></th>
33+
<th scope="row"><?php esc_html_e( 'Animation Type', 'mfbfw' ); ?></th>
3434
<td>
3535
<fieldset>
3636
<label for="transitionIn">
3737
<select name="mfbfw[transitionIn]" id="transitionIn">
3838
<?php
3939
foreach ( $transitionTypeArray as $key => $ms ) {
40-
echo "<option value='$ms' " . selected( $settings['transitionIn'], $ms, false ) . ">$ms</option>\n";
40+
echo "<option value='" . esc_attr( $ms ) . "' " . selected( $settings['transitionIn'], $ms, false ) . ">" . esc_html( $ms ) . "</option>\n";
4141
}
4242
?>
4343
</select>
44-
<?php _e( 'Animation type when opening FancyBox. (default: fade)', 'mfbfw' ); ?>
44+
<?php esc_html_e( 'Animation type when opening FancyBox. (default: fade)', 'mfbfw' ); ?>
4545
</label>
4646
<div class="cf"></div>
4747
<div class="line-spacer"></div>
4848
<label for="zoomSpeedIn">
4949
<select name="mfbfw[zoomSpeedIn]" id="zoomSpeedIn">
5050
<?php
5151
foreach ( $msArray as $key => $ms ) {
52-
echo "<option value='$ms' " . selected( $settings['zoomSpeedIn'], $ms, false ) . ">$ms</option>\n";
52+
echo "<option value='" . esc_attr( $ms ) . "' " . selected( $settings['zoomSpeedIn'], $ms, false ) . ">" . esc_html( $ms ) . "</option>\n";
5353
}
5454
?>
5555
</select>
56-
<?php _e( 'Speed in miliseconds of the FancyBox opening animation (default: 500)', 'mfbfw' ); ?>
56+
<?php esc_html_e( 'Speed in miliseconds of the FancyBox opening animation (default: 500)', 'mfbfw' ); ?>
5757
</label>
5858
</fieldset>
5959
</td>
6060
</tr>
6161
<tr valign="top">
62-
<th scope="row"><?php _e( 'Animation between slides Options', 'mfbfw' ); ?></th>
62+
<th scope="row"><?php esc_html_e( 'Animation between slides Options', 'mfbfw' ); ?></th>
6363
<td>
6464
<fieldset>
6565
<label for="transitionEffect">
6666
<select name="mfbfw[transitionEffect]" id="animationDuration">
6767
<?php
6868
foreach ( $slideEffectArray as $key => $ms ) {
69-
echo "<option value='$ms' " . selected( $settings['transitionEffect'], $ms, false ) . ">$ms</option>\n";
69+
echo "<option value='" . esc_attr( $ms ) . "' " . selected( $settings['transitionEffect'], $ms, false ) . ">" . esc_html( $ms ) . "</option>\n";
7070
}
7171
?>
7272
</select>
73-
<?php _e( 'Select Animation type for the slides(default: fade)', 'mfbfw' ); ?>
73+
<?php esc_html_e( 'Select Animation type for the slides(default: fade)', 'mfbfw' ); ?>
7474
</label>
7575
<div class="line-spacer"></div>
7676
<label for="zoomSpeedChange">
7777
<select name="mfbfw[zoomSpeedChange]" id="zoomSpeedChange">
7878
<?php
7979
foreach ( $msArray as $key => $ms ) {
80-
echo "<option value='$ms' " . selected( $settings['zoomSpeedChange'], $ms, false ) . ">$ms</option>\n";
80+
echo "<option value='" . esc_attr( $ms ) . "' " . selected( $settings['zoomSpeedChange'], $ms, false ) . ">" . esc_html( $ms ) . "</option>\n";
8181
}
8282
?>
8383
</select>
84-
<?php _e( 'Speed in miliseconds of the animation when navigating thorugh gallery items (default: 300)', 'mfbfw' ); ?>
84+
<?php esc_html_e( 'Speed in miliseconds of the animation when navigating thorugh gallery items (default: 300)', 'mfbfw' ); ?>
8585
</label>
8686
</fieldset>
8787
</td>

0 commit comments

Comments
 (0)