summaryrefslogtreecommitdiffstats
path: root/scripts/aurblup/aurblup.c
diff options
context:
space:
mode:
authorcanyonknight <canyonknight@gmail.com>2012-11-06 17:13:45 -0500
committerLukas Fleischer <archlinux@cryptocrack.de>2012-11-07 00:59:28 +0100
commit4161e147969a3445ffd84dcd10b99baaee523bce (patch)
tree9dc0be96647e35bf10f2ca02104bc3628647f5ec /scripts/aurblup/aurblup.c
parent630f1cbae8473fb05e5f5af7244eccc60fe93812 (diff)
downloadaurweb-4161e147969a3445ffd84dcd10b99baaee523bce.tar.xz
pkg_details.php: Fix potential XSS for package names and dep conditions
Package names and dep conditions can be specially crafted for an XSS attack. Properly sanitize these variables on the package details page. In addition, avoid including dep conditions as part of a package link. Signed-off-by: canyonknight <canyonknight@gmail.com> Signed-off-by: Lukas Fleischer <archlinux@cryptocrack.de>
Diffstat (limited to 'scripts/aurblup/aurblup.c')
0 files changed, 0 insertions, 0 deletions