Skip to content

Commit 64e6d5f

Browse files
committed
Merge branch '6012' into 1.11.x
# Conflicts: # main/session/session_user_edit.php
2 parents d808c28 + 6a26e4a commit 64e6d5f

File tree

1 file changed

+4
-3
lines changed

1 file changed

+4
-3
lines changed

main/session/session_user_edit.php

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -35,7 +35,7 @@
3535

3636
$form = new FormValidator('edit', 'post', api_get_self().'?session_id='.$sessionId.'&user_id='.$userId);
3737
$form->addHeader(get_lang('EditUserSessionDuration'));
38-
$userInfo = api_get_user_info($userId);
38+
$userInfo = api_get_user_info($userId, false, false, false, false, true);
3939

4040
// Show current end date for the session for this user, if any
4141
$userAccess = CourseManager::getFirstCourseAccessPerSessionAndUser(
@@ -78,7 +78,7 @@
7878
$header = '<div class="row">';
7979
$header .= '<div class="col-sm-5">';
8080
$header .= '<div class="thumbnail">';
81-
$header .= Display::img($userInfo['avatar'], $userInfo['complete_name']);
81+
$header .= Display::img($userInfo['avatar'], $userInfo['complete_name'], null, false);
8282
$header .= '</div>';
8383
$header .= '</div>';
8484

@@ -131,7 +131,8 @@
131131
SessionManager::editUserSessionDuration($duration, $userId, $sessionId);
132132
$message = Display::return_message(get_lang('ItemUpdated'), 'confirmation');
133133

134-
$url = $_SERVER['PHP_SELF'] . '?' . $_SERVER['QUERY_STRING'];
134+
$url = api_get_self().'?'.Security::remove_XSS($_SERVER['QUERY_STRING']);
135+
$url = str_replace('&amp;', '&', $url);
135136
header("Location: " . $url);
136137
exit();
137138
}

0 commit comments

Comments
 (0)