diff options
author | Claudio Jeker <claudio@cvs.openbsd.org> | 2007-10-10 13:23:41 +0000 |
---|---|---|
committer | Claudio Jeker <claudio@cvs.openbsd.org> | 2007-10-10 13:23:41 +0000 |
commit | 1ee8c6bef293ea00fd0643843d87cc6784b20527 (patch) | |
tree | 07e937cb19fc401d6fbc3a07fbc36629bc0bac3a /usr.sbin | |
parent | ef03f509d16a27dba23c36dfe4e9b8823d53ad7e (diff) |
Limit the allowed characters in a request to [a-zA-Z0-9-_.:/= ] everything
else will cause an "invalid character in input" error.
Fixes xss issue noticed by Anton Karpov.
OK henning@, sthen@
Diffstat (limited to 'usr.sbin')
0 files changed, 0 insertions, 0 deletions