44 * See COPYING.txt for license details.
55 */
66
7+ // phpcs:disable Magento2.Files.LineLength, Generic.Files.LineLength
8+
79/** @var \Magento\Framework\View\Helper\SecureHtmlRenderer $secureRenderer */
10+ /** @var Magento\Framework\Escaper $escaper */
811?>
912<?php $ _giftMessage = false ;
1013switch ($ block ->getCheckoutType ()):
@@ -61,9 +64,7 @@ switch ($block->getCheckoutType()):
6164 name="giftmessage[quote][<?= (int ) $ block ->getEntity ()->getId () ?> ][from]"
6265 id="gift-message-whole-from"
6366 title="<?= $ block ->escapeHtmlAttr (__ ('From ' )) ?> "
64- value="<?= /* @noEscape */ $ block
65- ->getEscaped ($ block ->getMessage ()->getSender (), $ block ->getDefaultFrom ())
66- ?> "
67+ value="<?= /* @noEscape */ $ block ->getEscaped ($ block ->getMessage ()->getSender () ?? '' , $ block ->getDefaultFrom ()) ?> "
6768 class="input-text">
6869 </div>
6970 </div>
@@ -75,9 +76,8 @@ switch ($block->getCheckoutType()):
7576 <input type="text"
7677 name="giftmessage[quote][<?= (int ) $ block ->getEntity ()->getId () ?> ][to]"
7778 id="gift-message-whole-to" title="<?= $ block ->escapeHtmlAttr (__ ('To ' )) ?> "
78- value="<?= /* @noEscape */ $ block
79- ->getEscaped ($ block ->getMessage ()->getRecipient (), $ block ->getDefaultTo ())
80- ?> " class="input-text">
79+ value="<?= /* @noEscape */ $ block ->getEscaped ($ block ->getMessage ()->getRecipient () ?? '' , $ block ->getDefaultTo ()) ?> "
80+ class="input-text">
8181 </div>
8282 </div>
8383 <div class="field text">
@@ -87,7 +87,7 @@ switch ($block->getCheckoutType()):
8787 <div class="control">
8888 <textarea id="gift-message-whole-message" class="input-text"
8989 name="giftmessage[quote][<?= (int )$ block ->getEntity ()->getId ()?> ][message]"
90- title="<?= $ block ->escapeHtmlAttr (__ ('Message ' )) ?> " rows="5" cols="10"><?= /* @noEscape */ $ block -> getEscaped ($ block ->getMessage ()->getMessage ()) ?> </textarea>
90+ title="<?= $ block ->escapeHtmlAttr (__ ('Message ' )) ?> " rows="5" cols="10"><?= $ escaper -> escapeHtml ($ block ->getMessage ()->getMessage ()) ?> </textarea>
9191 </div>
9292 </div>
9393 </fieldset>
@@ -165,7 +165,7 @@ script;
165165 value=
166166 "<?= /* @noEscape */
167167 $ block ->getEscaped (
168- $ block ->getMessage ($ _item )->getSender (),
168+ $ block ->getMessage ($ _item )->getSender () ?? '' ,
169169 $ block ->getDefaultFrom ()
170170 ) ?> " class="input-text">
171171 </div>
@@ -179,8 +179,7 @@ script;
179179 name="giftmessage[quote_item][<?= (int ) $ _item ->getId () ?> ][to]"
180180 id="gift-message-<?= (int ) $ _item ->getId () ?> -to"
181181 title="<?= $ block ->escapeHtmlAttr (__ ('To ' )) ?> "
182- value="<?= /* @noEscape */ $ block ->getEscaped ($ block
183- ->getMessage ($ _item )->getRecipient (), $ block ->getDefaultTo ()) ?> "
182+ value="<?= /* @noEscape */ $ block ->getEscaped ($ block ->getMessage ($ _item )->getRecipient () ?? '' , $ block ->getDefaultTo ()) ?> "
184183 class="input-text">
185184 </div>
186185 </div>
@@ -194,7 +193,7 @@ script;
194193 name="giftmessage[quote_item][<?= (int ) $ _item ->getId ()
195194 ?> ][message]"
196195 title="<?= $ block ->escapeHtmlAttr (__ ('Message ' )) ?> "
197- rows="5" cols="40"><?= /* @noEscape */ $ block -> getEscaped ($ block ->getMessage ($ _item )->getMessage ()) ?> </textarea>
196+ rows="5" cols="40"><?= $ escaper -> escapeHtml ($ block ->getMessage ($ _item )->getMessage ()) ?> </textarea>
198197 </div>
199198 </div>
200199 </fieldset>
@@ -221,6 +220,7 @@ script;
221220 </dt>
222221 </dl>
223222 </fieldset>
223+ <?php // phpcs:ignore Magento2.Legacy.PhtmlTemplate ?>
224224 <script type="text/x-magento-init">
225225 {
226226 "#allow_gift_options, #allow_gift_options_for_order, #allow_gift_options_for_items": {
@@ -291,8 +291,8 @@ script;
291291 ->getId () ?> ][from]"
292292 id="gift-message-<?= (int ) $ block ->getEntity ()->getId () ?> -from"
293293 title="<?= $ block ->escapeHtmlAttr (__ ('From ' )) ?> "
294- value="<?= /* @noEscape */ $ block ->getEscaped ($ block ->getMessage ()
295- -> getSender (), $ block -> getDefaultFrom ()) ?> " class="input-text">
294+ value="<?= /* @noEscape */ $ block ->getEscaped ($ block ->getMessage ()-> getSender () ?? '' , $ block -> getDefaultFrom ()) ?> "
295+ class="input-text">
296296 </div>
297297 </div>
298298 <div class="field to">
@@ -304,8 +304,8 @@ script;
304304 ->getId () ?> ][to]"
305305 id="gift-message-<?= (int ) $ block ->getEntity ()->getId () ?> -to"
306306 title="<?= $ block ->escapeHtmlAttr (__ ('To ' )) ?> "
307- value="<?= /* @noEscape */ $ block ->getEscaped ($ block ->getMessage ()
308- -> getRecipient (), $ block -> getDefaultTo ()) ?> " class="input-text">
307+ value="<?= /* @noEscape */ $ block ->getEscaped ($ block ->getMessage ()-> getRecipient () ?? '' , $ block -> getDefaultTo ()) ?> "
308+ class="input-text">
309309 </div>
310310 </div>
311311 <div class="field text">
@@ -316,7 +316,7 @@ script;
316316 <textarea id="gift-message-<?= (int ) $ block ->getEntity ()->getId () ?> -message"
317317 class="input-text" name="giftmessage[quote_address][<?= (int ) $ block
318318 ->getEntity ()->getId () ?> ][message]"
319- title="<?= $ block ->escapeHtmlAttr (__ ('Message ' )) ?> " rows="5" cols="40"><?= /* @noEscape */ $ block -> getEscaped ($ block ->getMessage ()->getMessage ()) ?> </textarea>
319+ title="<?= $ block ->escapeHtmlAttr (__ ('Message ' )) ?> " rows="5" cols="40"><?= $ escaper -> escapeHtml ($ block ->getMessage ()->getMessage ()) ?> </textarea>
320320 </div>
321321 </div>
322322 </fieldset>
@@ -391,9 +391,8 @@ script;
391391 name="giftmessage[quote_address_item][<?= (int ) $ _item ->getId ()
392392 ?> ][from]" id="gift-message-<?= (int ) $ _item ->getId () ?> -from"
393393 title="<?= $ block ->escapeHtmlAttr (__ ('From ' )) ?> "
394- value="<?= /* @noEscape */ $ block ->getEscaped ($ block
395- ->getMessage ($ _item )->getSender (), $ block ->getDefaultFrom ())
396- ?> " class="input-text">
394+ value="<?= /* @noEscape */ $ block ->getEscaped ($ block ->getMessage ($ _item )->getSender () ?? '' , $ block ->getDefaultFrom ()) ?> "
395+ class="input-text">
397396 </div>
398397 </div>
399398 <div class="field to">
@@ -405,10 +404,8 @@ script;
405404 name="giftmessage[quote_address_item][<?= (int ) $ _item ->getId ()
406405 ?> ][to]" id="gift-message-<?= (int ) $ _item ->getId () ?> -to"
407406 title="<?= $ block ->escapeHtmlAttr (__ ('To ' )) ?> "
408- value=
409- "<?= /* @noEscape */ $ block ->getEscaped ($ block
410- ->getMessage ($ _item )->getRecipient (), $ block ->getDefaultTo ())
411- ?> " class="input-text">
407+ value="<?= /* @noEscape */ $ block ->getEscaped ($ block ->getMessage ($ _item )->getRecipient () ?? '' , $ block ->getDefaultTo ()) ?> "
408+ class="input-text">
412409 </div>
413410 </div>
414411 <div class="field text">
@@ -421,7 +418,7 @@ script;
421418 name="giftmessage[quote_address_item][<?= (int ) $ _item
422419 ->getId () ?> ][message]"
423420 title="<?= $ block ->escapeHtmlAttr (__ ('Message ' )) ?> " rows="5"
424- cols="10"><?= /* @noEscape */ $ block -> getEscaped ($ block ->getMessage ($ _item )->getMessage ()) ?> </textarea>
421+ cols="10"><?= $ escaper -> escapeHtml ($ block ->getMessage ($ _item )->getMessage ()) ?> </textarea>
425422 </div>
426423 </div>
427424 </fieldset>
@@ -437,7 +434,8 @@ script;
437434 </dt>
438435 </dl>
439436 </fieldset>
440- <?php $ entityId = (int ) $ block ->getEntity ()->getId (); ?>
437+ <?php $ entityId = (int ) $ block ->getEntity ()->getId (); ?>
438+ <?php // phpcs:ignore Magento2.Legacy.PhtmlTemplate ?>
441439 <script type="text/x-magento-init">
442440 {
443441 "#allow_gift_options_<?= /* @noEscape */ $ entityId ?> , #allow_gift_options_for_order_<?= /* @noEscape */ $ entityId ?> , #allow_gift_options_for_items_<?= /* @noEscape */ $ entityId ?> ": {
@@ -449,6 +447,7 @@ script;
449447 break ;
450448 endswitch ;
451449if ($ _giftMessage ): ?>
450+ <?php // phpcs:ignore Magento2.Legacy.PhtmlTemplate ?>
452451<script type="text/x-magento-init">
453452 {
454453 "#shipping_method_form": {
0 commit comments