From e34ae17809c3dff8ed870405ffed4e0077cb8512 Mon Sep 17 00:00:00 2001 From: thomascube Date: Wed, 22 Nov 2006 11:42:37 +0000 Subject: Fixed XSS vulnerability (Bug #1484109) --- program/include/main.inc | 8 +++++++- 1 file changed, 7 insertions(+), 1 deletion(-) (limited to 'program/include') diff --git a/program/include/main.inc b/program/include/main.inc index da449c64c..55336fd30 100644 --- a/program/include/main.inc +++ b/program/include/main.inc @@ -1063,7 +1063,13 @@ function get_input_value($fname, $source, $allow_html=FALSE, $charset=NULL) return $value; } - +/** + * Remove single and double quotes from given string + */ +function strip_quotes($str) +{ + return preg_replace('/[\'"]/', '', $str); +} // ************** template parsing and gui functions ************** -- cgit v1.2.3