Index: branches/5.2.x/core/units/thesaurus/thesaurus_tp.php =================================================================== diff -u -N -r15314 -r16027 --- branches/5.2.x/core/units/thesaurus/thesaurus_tp.php (.../thesaurus_tp.php) (revision 15314) +++ branches/5.2.x/core/units/thesaurus/thesaurus_tp.php (.../thesaurus_tp.php) (revision 16027) @@ -1,6 +1,6 @@ Application->GetVar('keywords')) ); + $keywords = $this->Application->unescapeRequestVariable(trim($this->Application->GetVar('keywords'))); $table_name = $this->Application->getUnitOption($this->Prefix, 'TableName'); $sql = 'SELECT *