aboutsummaryrefslogtreecommitdiffstats
path: root/mod
diff options
context:
space:
mode:
authorfriendica <info@friendica.com>2014-01-16 01:19:58 -0800
committerfriendica <info@friendica.com>2014-01-16 01:19:58 -0800
commit18a40d0c376c07a5686b1f023f53852911138a24 (patch)
tree18837f441a32c4b99d307bfc1afa9bc0736ba1c3 /mod
parentec6b8e5cdaed1304c8740cbbd01153f4d9012568 (diff)
downloadvolse-hubzilla-18a40d0c376c07a5686b1f023f53852911138a24.tar.gz
volse-hubzilla-18a40d0c376c07a5686b1f023f53852911138a24.tar.bz2
volse-hubzilla-18a40d0c376c07a5686b1f023f53852911138a24.zip
prevent zid's from reaching the DAV core code.
Diffstat (limited to 'mod')
-rw-r--r--mod/cloud.php3
1 files changed, 3 insertions, 0 deletions
diff --git a/mod/cloud.php b/mod/cloud.php
index 2d8442807..82b570380 100644
--- a/mod/cloud.php
+++ b/mod/cloud.php
@@ -82,6 +82,9 @@ function cloud_init(&$a) {
$auth->setBrowserPlugin($browser);
+ $_SERVER['QUERY_STRING'] = str_replace(array('?f=','&f='),array('',''),$_SERVER['QUERY_STRING']);
+ $_SERVER['QUERY_STRING'] = preg_replace('/[\?&]zid=(.*?)([\?&]|$)/ism','',$_SERVER['QUERY_STRING']);
+
$server->addPlugin($browser);