Permalink
Browse files

MDL-20901 fixed input validation

  • Loading branch information...
1 parent 57b2fa9 commit 7eba4674c1aaac461424b836ace4d5639aa86b38 @skodak skodak committed Nov 21, 2009
Showing with 2 additions and 1 deletion.
  1. +1 −0 mod/forum/subscriber.html
  2. +1 −1 mod/forum/subscribers.php
@@ -1,6 +1,7 @@
<form id="subscriberform" method="post" action="subscribers.php">
<input type="hidden" name="id" value="<?php echo $id?>" />
+<input type="hidden" name="sesskey" value="<?php echo sesskey() ?>" />
<table align="center" border="0" cellpadding="5" cellspacing="0">
<tr>
<td valign="top">
@@ -94,7 +94,7 @@
$strforums = get_string("forums", "forum");
$searchtext = optional_param('searchtext', '', PARAM_RAW);
- if ($frm = data_submitted()) {
+ if ($frm = data_submitted() and confirm_sesskey()) {
/// A form was submitted so process the input
if (!empty($frm->add) and !empty($frm->addselect)) {

0 comments on commit 7eba467

Please sign in to comment.