fix XSS in random file
parent
0220c29dbf
commit
f924b116db
|
@ -389,7 +389,7 @@ function main($path)
|
||||||
$url = proxy_replace_domain($url, $domainforproxy, $header);
|
$url = proxy_replace_domain($url, $domainforproxy, $header);
|
||||||
}
|
}
|
||||||
return output('', 302, $header);
|
return output('', 302, $header);
|
||||||
} else return output('No ' . $_GET['random'] . 'file', 404);
|
} else return output('No ' . htmlspecialchars($_GET['random']) . 'file', 404);
|
||||||
} else return output('Hidden', 401);
|
} else return output('Hidden', 401);
|
||||||
}
|
}
|
||||||
// is file && not preview mode, download file
|
// is file && not preview mode, download file
|
||||||
|
|
Loading…
Reference in New Issue