fix: mitigate UUF vulnerability by escaping entity with escapeshellarg

This commit is contained in:
Sam Hsu
2025-06-24 00:27:38 -07:00
committed by GitHub
parent 3dca072b4c
commit eb53c46c33

View File

@@ -5,7 +5,7 @@ require_once '../../includes/session.php';
require_once '../../includes/config.php';
require_once '../../includes/authenticate.php';
$entity = escapeshellcmd($_POST['entity']);
$entity = escapeshellarg($_POST['entity']);
if (isset($entity)) {