From 8eed3b30cfe14b28fb486b0e4e8507804058332c Mon Sep 17 00:00:00 2001 From: moodler Date: Mon, 2 Oct 2006 13:35:28 +0000 Subject: [PATCH] Strip slashes from admin search string (it's ok, it never gets near a database) --- admin/search.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/admin/search.php b/admin/search.php index ea93dd661d..275e494a9a 100644 --- a/admin/search.php +++ b/admin/search.php @@ -5,7 +5,7 @@ require_once('../config.php'); require_once($CFG->libdir.'/adminlib.php'); -$query = trim(required_param('query', PARAM_NOTAGS)); // Search string +$query = trim(stripslashes_safe(required_param('query', PARAM_NOTAGS))); // Search string $adminroot = admin_get_root(); admin_externalpage_setup('search', $adminroot); // now hidden page -- 2.39.5