Prevent executable code within the shown result title and content
|Priority:||Should have||Due date:|
|Target version:||next (placeholder)|
|TYPO3 Version:||4.5||Has patch:||Yes|
Currently the title and content variables are not secured by calling e.g. htmlspecialchars on their data before outputting them on the page. If you are using external input sources for Solr like Nutch to index other sites, it can happen that the indexed content contains pieces of html code. Sometimes this results in a "broken" search results page. The attached patch contains a workaround for this problem.