From 78dc70bcdc69786dbc24e4a6d5913d5b367cc05b Mon Sep 17 00:00:00 2001 From: Matias Griese Date: Tue, 17 Nov 2020 19:10:13 +0200 Subject: [PATCH] Turn off xss detection on unset fields --- system/src/Grav/Common/Data/Validation.php | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/system/src/Grav/Common/Data/Validation.php b/system/src/Grav/Common/Data/Validation.php index 7fa8eca2d..c69fb1918 100644 --- a/system/src/Grav/Common/Data/Validation.php +++ b/system/src/Grav/Common/Data/Validation.php @@ -104,7 +104,8 @@ class Validation { $messages = []; - if (!($field['check_xss'] ?? true)) { + $type = $field['validate']['type'] ?? $field['type'] ?? 'text'; + if ($type === 'unset' || !($field['check_xss'] ?? true)) { return $messages; } $name = ucfirst($field['label'] ?? $field['name'] ?? 'UNKNOWN');