mirror of
https://github.com/librenms/librenms.git
synced 2024-09-21 10:28:13 +00:00
Fix url generator XSS (#12507)
This commit is contained in:
parent
3d02e76e0e
commit
ee1606d799
@ -294,7 +294,7 @@ class Url
|
||||
$url = empty($vars) ? '' : $prefix;
|
||||
foreach ($vars as $var => $value) {
|
||||
if ($value == '0' || $value != '' && ! Str::contains($var, 'opt') && ! is_numeric($var)) {
|
||||
$url .= $var . '=' . urlencode($value) . '/';
|
||||
$url .= urlencode($var) . '=' . urlencode($value) . '/';
|
||||
}
|
||||
}
|
||||
|
||||
|
Loading…
Reference in New Issue
Block a user