Skip to content

HTTPS clone URL

Subversion checkout URL

You can clone with HTTPS or Subversion.

Download ZIP
Browse files

don't crash validating the template name

  • Loading branch information...
commit 5e99d3cc9ae7bd684781a111ce89603b6fd2699c 1 parent 6c8fac0
@tonycoz authored
Showing with 2 additions and 1 deletion.
  1. +2 −1  site/cgi-bin/modules/BSE/UI/AdminNewsletter.pm
View
3  site/cgi-bin/modules/BSE/UI/AdminNewsletter.pm
@@ -8,7 +8,7 @@ use BSE::Util::HTML qw(:default popup_menu);
use BSE::Util::Iterate;
use base 'BSE::UI::AdminDispatch';
-our $VERSION = "1.003";
+our $VERSION = "1.004";
=head1 NAME
@@ -295,6 +295,7 @@ sub validate {
for my $field (qw(html_template text_template article_template)) {
my $value = $q->param($field);
if ($value) {
+ require BSE::Template;
if ($value =~ /\.\./) {
push(@$errors, [ $field, "Template $value is invalid, contains .." ]);
}
Please sign in to comment.
Something went wrong with that request. Please try again.