diff --git a/library/Icinga/Web/Navigation/Renderer/NavigationItemRenderer.php b/library/Icinga/Web/Navigation/Renderer/NavigationItemRenderer.php index 0fce5998f..d94aabcb1 100644 --- a/library/Icinga/Web/Navigation/Renderer/NavigationItemRenderer.php +++ b/library/Icinga/Web/Navigation/Renderer/NavigationItemRenderer.php @@ -192,7 +192,7 @@ class NavigationItemRenderer $content = sprintf( '%s', $this->view()->propertiesToString($item->getAttributes()), - $url, + $this->view()->escape($url), $this->renderTargetAttribute(), $label );