<br><br><div><span class="gmail_quote">On 8/9/06, <b class="gmail_sendername">Moshe Weitzman</b> <<a href="mailto:weitzman@tejasa.com">weitzman@tejasa.com</a>> wrote:</span><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">
sounds like a great enhancement.<br><br>be careful with this. the node fields have not been sanitized at all i nthe<br>DB. you are just including them without protection, AFAICT. there is<br>probably an easy fix for this.
</blockquote><div><br>Umm. the entire idea is that they haven't been sanitised. <br><br>these are the fields that will be saved to the database. They are not for displaying.<br><br>For example, if you export a custom block, you want to export the php that you entered, not the value the php generates.
<br> </div><br></div><br>