From: garvinhicking Date: Tue, 21 Aug 2007 15:54:25 +0000 (+0000) Subject: array check, thanks to phellmes X-Git-Url: http://git.mjollnir.org/gw?a=commitdiff_plain;h=709adcd54af1fb62e2654fe90acc17edc3fcc4fc;p=s9y.git array check, thanks to phellmes --- diff --git a/include/admin/personal.inc.php b/include/admin/personal.inc.php index ed970a1..78d83be 100644 --- a/include/admin/personal.inc.php +++ b/include/admin/personal.inc.php @@ -32,7 +32,10 @@ if ($serendipity['GET']['adminAction'] == 'save' && serendipity_checkFormToken() // Void, no fixing neccessarry } elseif (serendipity_checkPermission('adminUsersMaintainSame')) { - + if (!is_array($_POST[$item['var']])) { + continue; + } + // Check that no user may assign groups he's not allowed to. foreach($_POST[$item['var']] AS $groupkey => $groupval) { if (in_array($groupval, $valid_groups)) {