Sanitize data

This commit is contained in:
Laurent Destailleur 2020-12-27 20:49:54 +01:00
parent e89a410e59
commit d1d4914684

View File

@ -65,7 +65,7 @@ if (!$section)
dol_print_error('', 'Error, section parameter missing');
exit;
}
$urlfile = GETPOST("urlfile");
$urlfile = (string) dol_sanitizePathName(GETPOST("urlfile"));
if (!$urlfile)
{
dol_print_error('', "ErrorParamNotDefined");