mirror of https://tt-rss.org/git/tt-rss.git
clean_filename: also remove markup
This commit is contained in:
parent
e53cd12ffd
commit
9c366a4811
|
@ -593,7 +593,7 @@
|
|||
}
|
||||
|
||||
function clean_filename($filename) {
|
||||
return basename(preg_replace("/\.\.|[\/\\\]/", "", $filename));
|
||||
return basename(preg_replace("/\.\.|[\/\\\]/", "", clean($filename)));
|
||||
}
|
||||
|
||||
function make_password($length = 12) {
|
||||
|
|
Loading…
Reference in New Issue