From 2dec354131bdc75cb4aea36857628c911c830a6f Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Bar=C4=B1=C5=9F=20Soner=20U=C5=9Fakl=C4=B1?= Date: Mon, 26 Sep 2016 17:10:39 +0300 Subject: [PATCH] backport xss fix --- src/controllers/accounts/helpers.js | 1 + 1 file changed, 1 insertion(+) diff --git a/src/controllers/accounts/helpers.js b/src/controllers/accounts/helpers.js index 12a891a673..bed89c030c 100644 --- a/src/controllers/accounts/helpers.js +++ b/src/controllers/accounts/helpers.js @@ -109,6 +109,7 @@ helpers.getUserDataByUserSlug = function(userslug, callerUID, callback) { userData.location = validator.escape(userData.location || ''); userData.signature = validator.escape(userData.signature || ''); userData.aboutme = validator.escape(userData.aboutme || ''); + userData.birthday = validator.escape(userData.birthday || ''); userData['cover:url'] = userData['cover:url'] || require('../../coverPhoto').getDefaultProfileCover(userData.uid); userData['cover:position'] = userData['cover:position'] || '50% 50%';