Fixed a potential XSS

This commit is contained in:
root 2008-11-17 21:05:54 +00:00
parent a51fc6ba74
commit 2c59d5a783

View file

@ -56,7 +56,7 @@
if(trim(mysql_real_escape_string(stripslashes($_REQUEST['newemail']))) == "") if(trim(mysql_real_escape_string(stripslashes($_REQUEST['newemail']))) == "")
{ {
showheader(_("My CAcert.org Account!")); showheader(_("My CAcert.org Account!"));
printf(_("Not a valid email address. Can't continue."), $_REQUEST['email']); printf(_("Not a valid email address. Can't continue."));
showfooter(); showfooter();
exit; exit;
} }