modules/galleries: Fixed code injection vulnerability

This commit is contained in:
michu2k
2021-07-31 16:54:30 +02:00
parent 86011d4a26
commit e352185d6a
6 changed files with 63 additions and 59 deletions

View File

@@ -60,7 +60,7 @@
<h3 class="panel-title">{$lang.galleries.settings}</h3>
</div>
<div class="panel-body">
<form action="{?=url(ADMIN.'/galleries/saveSettings/'.$gallery.id)?}" method="POST">
<form action="{?=url(ADMIN.'/galleries/saveSettings/'.$gallery.id)?}" method="POST">
<div class="form-group">
<label>{$lang.general.name}</label>
<input type="text" name="name" required class="form-control" value="{$gallery.settings.name}" />