Fixed a potential XSS

pull/1/head
root 16 years ago
parent a51fc6ba74
commit 2c59d5a783

@ -56,7 +56,7 @@
if(trim(mysql_real_escape_string(stripslashes($_REQUEST['newemail']))) == "") if(trim(mysql_real_escape_string(stripslashes($_REQUEST['newemail']))) == "")
{ {
showheader(_("My CAcert.org Account!")); showheader(_("My CAcert.org Account!"));
printf(_("Not a valid email address. Can't continue."), $_REQUEST['email']); printf(_("Not a valid email address. Can't continue."));
showfooter(); showfooter();
exit; exit;
} }

Loading…
Cancel
Save