From afb2e04fab230abce0635b33cce4ddd8a8e91529 Mon Sep 17 00:00:00 2001 From: nikrou Date: Wed, 21 Apr 2010 20:13:41 +0000 Subject: Bug 1621 fixed : CSS vulnerability in register.php login and mail_address fields must be filtered with htmlspecialchars. git-svn-id: http://piwigo.org/svn/trunk@5936 68402e56-0260-453c-a942-63ccdbb3a9ee --- register.php | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'register.php') diff --git a/register.php b/register.php index 5a9fb04c5..98e76d916 100644 --- a/register.php +++ b/register.php @@ -76,8 +76,8 @@ $template->assign(array( 'U_HOME' => make_index_url(), 'F_ACTION' => 'register.php', - 'F_LOGIN' => $login, - 'F_EMAIL' => $email + 'F_LOGIN' => htmlspecialchars($login, ENT_QUOTES, 'utf-8'), + 'F_EMAIL' => htmlspecialchars($email, ENT_QUOTES, 'utf-8') )); //-------------------------------------------------------------- errors display -- cgit v1.2.3