summaryrefslogtreecommitdiff
path: root/app/Controllers/subscriptionController.php
diff options
context:
space:
mode:
authorGravatar Alexandre Alapetite <alexandre@alapetite.fr> 2017-02-28 21:16:55 +0100
committerGravatar GitHub <noreply@github.com> 2017-02-28 21:16:55 +0100
commit972cd0b908ab53ba64e8fc819099830aba7c09f8 (patch)
treeb197d46c9a8c0bfea4ab5a8b990a3e61e3f73c55 /app/Controllers/subscriptionController.php
parent777fb7125fa8eb2915f4382b2c2faa0caeee3b57 (diff)
parent8a6b38115456f592c8a246f9abbb84f4449721c0 (diff)
Merge pull request #1441 from Alkarex/Sanitize-Website-URL
Sanitize Web site URL
Diffstat (limited to 'app/Controllers/subscriptionController.php')
-rw-r--r--app/Controllers/subscriptionController.php4
1 files changed, 2 insertions, 2 deletions
diff --git a/app/Controllers/subscriptionController.php b/app/Controllers/subscriptionController.php
index 03d3ee15e..aa9f18663 100644
--- a/app/Controllers/subscriptionController.php
+++ b/app/Controllers/subscriptionController.php
@@ -90,8 +90,8 @@ class FreshRSS_subscription_Controller extends Minz_ActionController {
$values = array(
'name' => Minz_Request::param('name', ''),
'description' => sanitizeHTML(Minz_Request::param('description', '', true)),
- 'website' => Minz_Request::param('website', ''),
- 'url' => Minz_Request::param('url', ''),
+ 'website' => checkUrl(Minz_Request::param('website', '')),
+ 'url' => checkUrl(Minz_Request::param('url', '')),
'category' => $cat,
'pathEntries' => Minz_Request::param('path_entries', ''),
'priority' => intval(Minz_Request::param('priority', 0)),