Plugin Directory

Changeset 3119746


Ignore:
Timestamp:
07/17/2024 12:47:41 AM (21 months ago)
Author:
webangon
Message:

String sanitisation

File:
1 edited

Legend:

Unmodified
Added
Removed
  • news-element/trunk/includes/ajax_posts.php

    r3116211 r3119746  
    4242 
    4343            $per_page = esc_attr($_POST['xlxtra_data']['per_page']);
    44             $template = esc_attr($_POST['xlxtra_data']['template']);
     44            $template = sanitize_key($_POST['xlxtra_data']['template']);
    4545            $metaf = esc_attr($_POST['xlxtra_data']['metaf']);
    4646            $metar = esc_attr($_POST['xlxtra_data']['metar']);
Note: See TracChangeset for help on using the changeset viewer.