Skip to content

HTTPS clone URL

Subversion checkout URL

You can clone with
or
.
Download ZIP
Browse files

MDL-20901 fixed input validation

  • Loading branch information...
commit 35c18394a037bb189ed8ce36a5e1b3ce73dc15bd 1 parent 5d8c79c
@skodak skodak authored
Showing with 2 additions and 1 deletion.
  1. +1 −0  mod/forum/subscriber.html
  2. +1 −1  mod/forum/subscribers.php
View
1  mod/forum/subscriber.html
@@ -2,6 +2,7 @@
<form id="subscriberform" method="post" action="subscribers.php">
<input type="hidden" name="previoussearch" value="<?php echo $previoussearch ?>" />
<input type="hidden" name="id" value="<?php echo $id?>" />
+<input type="hidden" name="sesskey" value="<?php echo sesskey() ?>" />
<table align="center" border="0" cellpadding="5" cellspacing="0">
<tr>
<td valign="top">
View
2  mod/forum/subscribers.php
@@ -93,7 +93,7 @@
$strsubscribers = get_string("subscribers", "forum");
$strforums = get_string("forums", "forum");
- if ($frm = data_submitted()) {
+ if ($frm = data_submitted() and confirm_sesskey()) {
/// A form was submitted so process the input
Please sign in to comment.
Something went wrong with that request. Please try again.