public function ajaxEditDescr(Array $data)
{
if (!strlen($data['content'])) return false;
- return $this->modify('descr', utf8_decode($data['content']));
+ $content = str_replace(['&','<','>'], ['&','<','>'], $data['content']);
+ return $this->modify('descr', utf8_decode($content));
}
}