Changeset 3297:10ef6e5a76d1
- Timestamp:
- 08/03/16 17:38:39 (9 years ago)
- Branch:
- default
- Files:
-
- 3 edited
Legend:
- Unmodified
- Added
- Removed
-
CHANGELOG
r3296 r3297 5 5 * Security: Prevents sort of SSRF/XSPA vulnerability in feed import, thanks wiswat 6 6 * Security: Prevents reflected XSS in meda manager, thanks Chen Ruiqi 7 * Security: Fix somes vulnerabilities in blogroll plugin, thanks Onur Yılmaz - Netsparker (https://www.netsparker.com) 7 8 * Fix mix-content preview 8 9 * Pure CSS3 sticky footer for admin pages (aka « footer de merde ») -
plugins/blogroll/edit.php
r2824 r3297 12 12 if (!defined('DC_CONTEXT_ADMIN')) { return; } 13 13 14 $id = $_REQUEST['id'];14 $id = html::escapeHTML($_REQUEST['id']); 15 15 16 16 try { … … 33 33 if (isset($rs) && !$rs->is_cat && !empty($_POST['edit_link'])) 34 34 { 35 $link_title = $_POST['link_title'];36 $link_href = $_POST['link_href'];37 $link_desc = $_POST['link_desc'];38 $link_lang = $_POST['link_lang'];35 $link_title = html::escapeHTML($_POST['link_title']); 36 $link_href = html::escapeHTML($_POST['link_href']); 37 $link_desc = html::escapeHTML($_POST['link_desc']); 38 $link_lang = html::escapeHTML($_POST['link_lang']); 39 39 40 40 $link_xfn = ''; … … 79 79 if (isset($rs) && $rs->is_cat && !empty($_POST['edit_cat'])) 80 80 { 81 $link_desc = $_POST['link_desc'];81 $link_desc = html::escapeHTML($_POST['link_desc']); 82 82 83 83 try { -
plugins/blogroll/index.php
r3182 r3297 59 59 if (!empty($_POST['import_links_do'])) { 60 60 foreach ($_POST['entries'] as $idx) { 61 $link_title = $_POST['title'][$idx];62 $link_href = $_POST['url'][$idx];63 $link_desc = $_POST['desc'][$idx];61 $link_title = html::escapeHTML($_POST['title'][$idx]); 62 $link_href = html::escapeHTML($_POST['url'][$idx]); 63 $link_desc = html::escapeHTML($_POST['desc'][$idx]); 64 64 try { 65 65 $blogroll->addLink($link_title,$link_href,$link_desc,''); … … 82 82 if (!empty($_POST['add_link'])) 83 83 { 84 $link_title = $_POST['link_title'];85 $link_href = $_POST['link_href'];86 $link_desc = $_POST['link_desc'];87 $link_lang = $_POST['link_lang'];84 $link_title = html::escapeHTML($_POST['link_title']); 85 $link_href = html::escapeHTML($_POST['link_href']); 86 $link_desc = html::escapeHTML($_POST['link_desc']); 87 $link_lang = html::escapeHTML($_POST['link_lang']); 88 88 89 89 try { … … 101 101 if (!empty($_POST['add_cat'])) 102 102 { 103 $cat_title = $_POST['cat_title'];103 $cat_title = html::escapeHTML($_POST['cat_title']); 104 104 105 105 try {
Note: See TracChangeset
for help on using the changeset viewer.