From: joey Date: Tue, 25 Apr 2006 05:53:22 +0000 (+0000) Subject: prevent users from registering with name that is not a valid wikifile X-Git-Tag: 1.0~26 X-Git-Url: http://git.vanrenterghem.biz/git.ikiwiki.info.git/commitdiff_plain/bfa96ad2827ebae0d0288d201c1a730a8d7784e1 prevent users from registering with name that is not a valid wikifile avoids XSS attacks and is generally a good limitation --- diff --git a/IkiWiki/CGI.pm b/IkiWiki/CGI.pm index 36d0e6008..067886c70 100644 --- a/IkiWiki/CGI.pm +++ b/IkiWiki/CGI.pm @@ -118,6 +118,7 @@ sub cgi_signin ($$) { #{{{ validate => sub { my $name=shift; length $name && + $name=~/$wiki_file_regexp/ && ! userinfo_get($name, "regdate"); }, );