diff options
author | Byron Jones <bjones@mozilla.com> | 2013-03-21 06:09:12 +0100 |
---|---|---|
committer | Byron Jones <bjones@mozilla.com> | 2013-03-21 06:09:12 +0100 |
commit | 39f125ca3b0dcd3e1d7318de2e193e4335a4b9a1 (patch) | |
tree | 16341dbdac3ae9a8c2fdeceeaf28a0a247b028ab /extensions/Push/lib/Admin.pm | |
parent | 4025fe8be55ed10613cf528bf698084415f8cb85 (diff) | |
download | bugzilla-39f125ca3b0dcd3e1d7318de2e193e4335a4b9a1.tar.gz bugzilla-39f125ca3b0dcd3e1d7318de2e193e4335a4b9a1.tar.xz |
Bug 853314: unable to edit bugzilla push options - insecure dependency
Diffstat (limited to 'extensions/Push/lib/Admin.pm')
-rw-r--r-- | extensions/Push/lib/Admin.pm | 3 |
1 files changed, 2 insertions, 1 deletions
diff --git a/extensions/Push/lib/Admin.pm b/extensions/Push/lib/Admin.pm index d7df25c09..f579409bd 100644 --- a/extensions/Push/lib/Admin.pm +++ b/extensions/Push/lib/Admin.pm @@ -13,7 +13,7 @@ use warnings; use Bugzilla; use Bugzilla::Error; use Bugzilla::Extension::Push::Util; -use Bugzilla::Util qw(trim detaint_natural); +use Bugzilla::Util qw(trim detaint_natural trick_taint); use base qw(Exporter); our @EXPORT = qw( @@ -67,6 +67,7 @@ sub _update_config_from_form { # update foreach my $option ($config->options) { my $option_name = $option->{name}; + trick_taint($values->{$option_name}); $config->{$option_name} = $values->{$option_name}; } $config->update(); |