From 05a37a1ed0e12554e8d4fbd47712434853f7e6b2 Mon Sep 17 00:00:00 2001 From: Derek Jones Date: Mon, 18 Feb 2008 20:54:15 +0000 Subject: Escaped the '-' in the default 'permitted_uri_chars' config item, as some developers just want to add characters to the pattern and do not have a good grasp of regular expressions. --- system/application/config/config.php | 2 +- user_guide/changelog.html | 1 + 2 files changed, 2 insertions(+), 1 deletion(-) diff --git a/system/application/config/config.php b/system/application/config/config.php index a02fed142..72d38199c 100644 --- a/system/application/config/config.php +++ b/system/application/config/config.php @@ -123,7 +123,7 @@ $config['subclass_prefix'] = 'MY_'; | DO NOT CHANGE THIS UNLESS YOU FULLY UNDERSTAND THE REPERCUSSIONS!! | */ -$config['permitted_uri_chars'] = 'a-z 0-9~%.:_-'; +$config['permitted_uri_chars'] = 'a-z 0-9~%.:_\-'; /* diff --git a/user_guide/changelog.html b/user_guide/changelog.html index 6ea7d3a64..c245c73b5 100644 --- a/user_guide/changelog.html +++ b/user_guide/changelog.html @@ -89,6 +89,7 @@ Change Log
  • Added $_SERVER, $_FILES, $_ENV, and $_SESSION to sanitization of globals.
  • Added a Path Helper.
  • Simplified _reindex_segments() in the URI class
  • +
  • Escaped the '-' in the default 'permitted_uri_chars' config item, to prevent errors if developers just try to add additional characters to the end of the default expression.
  • -- cgit v1.2.3-24-g4f1b