From 93f69ef6c6bc7e5a84e2107b8ba9eb36df5d048a Mon Sep 17 00:00:00 2001 From: yggverse Date: Mon, 6 May 2024 18:06:16 +0300 Subject: [PATCH] sanitize request string --- src/Controller/Server/Nex.php | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) diff --git a/src/Controller/Server/Nex.php b/src/Controller/Server/Nex.php index 4082f1f..2273e18 100644 --- a/src/Controller/Server/Nex.php +++ b/src/Controller/Server/Nex.php @@ -72,7 +72,12 @@ class Nex implements MessageComponentInterface ) { // Format request $request = '/' . ltrim( - trim($request), '/' + trim( + filter_var( + $request, + FILTER_SANITIZE_URL + ) + ), '/' ); // Route request