diff --git a/src/applications/diffusion/controller/DiffusionLastModifiedController.php b/src/applications/diffusion/controller/DiffusionLastModifiedController.php --- a/src/applications/diffusion/controller/DiffusionLastModifiedController.php +++ b/src/applications/diffusion/controller/DiffusionLastModifiedController.php @@ -153,6 +153,12 @@ number_format($lint)); } + // The client treats these results as markup, so make sure they have been + // escaped correctly. + foreach ($return as $key => $value) { + $return[$key] = hsprintf('%s', $value); + } + return $return; }