sanitize scope and host

remotes/origin/stable45
Michiel de Jong 13 years ago
parent 322fd51261
commit 995f9c7348
  1. 4
      apps/remoteStorage/auth.php

@ -44,9 +44,9 @@ foreach($_GET as $k => $v) {
$userId=$v;
} else if($k=='redirect_uri'){
$appUrlParts=explode('/', $v);
$appUrl = $appUrlParts[2];//bit dodgy i guess
$appUrl = htmlentities($appUrlParts[2]);//TODO: check if this is equal to client_id
} else if($k=='scope'){
$categories=$v;
$categories=htmlentities($v);
}
}
$currUser = OCP\USER::getUser();

Loading…
Cancel
Save