Adding check and sanitize quotes.

This commit is contained in:
Moutonjr Geoff 2019-10-02 18:21:13 +02:00
parent 6bf46f618f
commit a3b52b752f
2 changed files with 6 additions and 5 deletions

1
check.php Normal file
View File

@ -0,0 +1 @@
<pre> <?php echo shell_exec("jq . lessons.json") ?> </pre>

View File

@ -10,15 +10,15 @@ $(document).ready(function(){
wordsHtml += ' <div style="display: none;" class="col-md-4 lesson lesson-' + lessonIndex + '">';
wordsHtml += ' <div class="service-item">';
if('img' in word){
wordsHtml += ' <div class="icon" onclick="englishSay(\''+ word.name +'\')" style="background-image:url(images/'+ word.img +');"></div>';
wordsHtml += ' <div class="icon" onclick="englishSay(\''+ word.name.replace("'","\\'") +'\')" style="background-image:url(\'images/'+ word.img +'\');"></div>';
} else if ('url' in word) {
wordsHtml += ' <div class="icon" onclick="englishSay(\''+ word.name +'\')" style="background-image:url('+ word.url +');"></div>';
wordsHtml += ' <div class="icon" onclick="englishSay(\''+ word.name.replace("'","\\'") +'\')" style="background-image:url(\''+ encodeURIComponent(word.url) +'\');"></div>';
} else {
wordsHtml += ' <div class="icon" onclick="englishSay(\''+ word.name +'\')" style="background-image:url(https://img.icons8.com/'+ word.name +'.png);"></div>';
wordsHtml += ' <div class="icon" onclick="englishSay(\''+ word.name.replace("'","\\'") +'\')" style="background-image:url(\'https://img.icons8.com/'+ encodeURIComponent(word.name) +'.png\');"></div>';
}
wordsHtml += ' <h4 class="clickSay" onclick="englishSay(\''+ word.name +'\')">'+ word.name +'</h4>';
wordsHtml += ' <h4 class="clickSay" onclick="englishSay(\''+ word.name.replace("'","\\'") +'\')">'+ word.name +'</h4>';
if('example' in word){
wordsHtml += ' <p class="clickSay" onclick="englishSay(\''+ word.example +'\')">'+ word.example +'</p>';
wordsHtml += ' <p class="clickSay" onclick="englishSay(\''+ word.example.replace("'","\\'") +'\')">'+ word.example +'</p>';
}
wordsHtml += ' </div>';
wordsHtml += ' </div>';