diff options
Diffstat (limited to 'mod/follow.php')
-rw-r--r-- | mod/follow.php | 4 |
1 files changed, 4 insertions, 0 deletions
diff --git a/mod/follow.php b/mod/follow.php index 5f4ac1df0..6786e9039 100644 --- a/mod/follow.php +++ b/mod/follow.php @@ -12,6 +12,10 @@ function follow_post(&$a) { $url = $orig_url = notags(trim($_POST['url'])); + // remove ajax junk + + $url = str_replace('/#!/','/',$url); + if(! allowed_url($url)) { notice( t('Disallowed profile URL.') . EOL); goaway($_SESSION['return_url']); |