bug 3201 fixed: check plugin identifier
git-svn-id: http://piwigo.org/svn/trunk@30950 68402e56-0260-453c-a942-63ccdbb3a9ee
This commit is contained in:
parent
9faae3e25e
commit
3c28040ca8
1 changed files with 6 additions and 0 deletions
|
@ -45,6 +45,12 @@ if (count($sections)<2)
|
|||
}
|
||||
|
||||
$plugin_id = $sections[0];
|
||||
|
||||
if (!preg_match('/^\w+$/', $plugin_id))
|
||||
{
|
||||
die('Invalid plugin identifier');
|
||||
}
|
||||
|
||||
if ( !isset($pwg_loaded_plugins[$plugin_id]) )
|
||||
{
|
||||
die('Invalid URL - plugin '.$plugin_id.' not active');
|
||||
|
|
Loading…
Reference in a new issue