From c6c54c2e4235783544c44c08e4e55d4057556588 Mon Sep 17 00:00:00 2001 From: Koosha Khajeh Moogahi Date: Sat, 18 Aug 2012 19:06:44 +0200 Subject: Bug 187753: Specify a maximum length for quips (512 characters) r/a=LpSolit --- quips.cgi | 4 ++++ 1 file changed, 4 insertions(+) (limited to 'quips.cgi') diff --git a/quips.cgi b/quips.cgi index 565056a6e..266ed516f 100755 --- a/quips.cgi +++ b/quips.cgi @@ -65,6 +65,10 @@ if ($action eq "add") { || $user->in_group('bz_quip_moderators') || 0; my $comment = $cgi->param("quip"); $comment || ThrowUserError("need_quip"); + + ThrowUserError("quip_too_long", { length => length($comment) }) + if length($comment) > MAX_QUIP_LENGTH; + trick_taint($comment); # Used in a placeholder below $dbh->do("INSERT INTO quips (userid, quip, approved) VALUES (?, ?, ?)", -- cgit v1.2.3-24-g4f1b