Explorar o código

Update HomeSettings Controller, allow html in bio

Daniel Supernault %!s(int64=6) %!d(string=hai) anos
pai
achega
f69248ba06
Modificáronse 1 ficheiros con 3 adicións e 2 borrados
  1. 3 2
      app/Http/Controllers/Settings/HomeSettings.php

+ 3 - 2
app/Http/Controllers/Settings/HomeSettings.php

@@ -11,6 +11,7 @@ use App\UserFilter;
 use App\Util\Lexer\PrettyNumber;
 use App\Util\Lexer\PrettyNumber;
 use Auth;
 use Auth;
 use DB;
 use DB;
+use Purify;
 use Illuminate\Http\Request;
 use Illuminate\Http\Request;
 
 
 trait HomeSettings
 trait HomeSettings
@@ -40,8 +41,8 @@ trait HomeSettings
       ]);
       ]);
 
 
         $changes = false;
         $changes = false;
-        $name = $request->input('name');
-        $bio = $request->input('bio');
+        $name = strip_tags($request->input('name'));
+        $bio = Purify::clean($request->input('bio'));
         $website = $request->input('website');
         $website = $request->input('website');
         $email = $request->input('email');
         $email = $request->input('email');
         $user = Auth::user();
         $user = Auth::user();