From 22efd7ea93a360679cef9f3d438e89dac3576be3 Mon Sep 17 00:00:00 2001 From: Maxi Redigonda Date: Thu, 10 Oct 2019 19:48:33 -0300 Subject: [PATCH] Fix lack of sanitization for path ticket/add-custom-response --- server/controllers/ticket/add-custom-response.php | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/server/controllers/ticket/add-custom-response.php b/server/controllers/ticket/add-custom-response.php index 2982d1d0..2516d02e 100755 --- a/server/controllers/ticket/add-custom-response.php +++ b/server/controllers/ticket/add-custom-response.php @@ -55,7 +55,7 @@ class AddCustomResponseController extends Controller { $customResponse = new CustomResponse(); $customResponse->setProperties([ 'name' => Controller::request('name'), - 'content' => Controller::request('content'), + 'content' => Controller::request('content', true), 'language' => Controller::request('language') ]); $customResponse->store(); @@ -64,4 +64,4 @@ class AddCustomResponseController extends Controller { Response::respondSuccess(); } -} \ No newline at end of file +}