diff --git a/app/code/Magento/GiftMessage/Block/Adminhtml/Sales/Order/Create/Items.php b/app/code/Magento/GiftMessage/Block/Adminhtml/Sales/Order/Create/Items.php index ce6cc4aa7fe49..0af4cf60401e8 100644 --- a/app/code/Magento/GiftMessage/Block/Adminhtml/Sales/Order/Create/Items.php +++ b/app/code/Magento/GiftMessage/Block/Adminhtml/Sales/Order/Create/Items.php @@ -84,7 +84,7 @@ public function getMessageText() { if ($this->getItem()->getGiftMessageId()) { $model = $this->_messageHelper->getGiftMessage($this->getItem()->getGiftMessageId()); - return $this->escapeHtml($model->getMessage()); + return $this->_escaper->escapeHtml($model->getMessage()); } return ''; } diff --git a/app/code/Magento/GiftMessage/Block/Adminhtml/Sales/Order/View/Items.php b/app/code/Magento/GiftMessage/Block/Adminhtml/Sales/Order/View/Items.php index c15b76583187a..a960398e340ae 100644 --- a/app/code/Magento/GiftMessage/Block/Adminhtml/Sales/Order/View/Items.php +++ b/app/code/Magento/GiftMessage/Block/Adminhtml/Sales/Order/View/Items.php @@ -210,7 +210,7 @@ public function canDisplayGiftmessage() */ public function getSender() { - return $this->escapeHtml($this->getMessage()->getSender()); + return $this->_escaper->escapeHtml($this->getMessage()->getSender()); } /** @@ -220,7 +220,7 @@ public function getSender() */ public function getRecipient() { - return $this->escapeHtml($this->getMessage()->getRecipient()); + return $this->_escaper->escapeHtml($this->getMessage()->getRecipient()); } /** @@ -230,6 +230,6 @@ public function getRecipient() */ public function getMessageText() { - return $this->escapeHtml($this->getMessage()->getMessage()); + return $this->_escaper->escapeHtml($this->getMessage()->getMessage()); } } diff --git a/app/code/Magento/GiftMessage/Block/Message/Inline.php b/app/code/Magento/GiftMessage/Block/Message/Inline.php index 475f1c2b717ae..b6f6b147024ee 100644 --- a/app/code/Magento/GiftMessage/Block/Message/Inline.php +++ b/app/code/Magento/GiftMessage/Block/Message/Inline.php @@ -324,7 +324,7 @@ public function getEntityHasMessage() */ public function getEscaped($value, $defaultValue = '') { - return $this->escapeHtml(trim($value) != '' ? $value : $defaultValue); + return $this->_escaper->escapeHtml(trim($value) != '' ? $value : $defaultValue); } /** diff --git a/app/code/Magento/GiftMessage/view/adminhtml/templates/giftoptionsform.phtml b/app/code/Magento/GiftMessage/view/adminhtml/templates/giftoptionsform.phtml index 264fdab0ade8d..6059b1b09651e 100644 --- a/app/code/Magento/GiftMessage/view/adminhtml/templates/giftoptionsform.phtml +++ b/app/code/Magento/GiftMessage/view/adminhtml/templates/giftoptionsform.phtml @@ -3,12 +3,16 @@ * Copyright © Magento, Inc. All rights reserved. * See COPYING.txt for license details. */ + +/** + * @var \Magento\Framework\Escaper $escaper + */ ?> canDisplayGiftmessageForm()) : ?>