Fix unsafe login (#6797)

fix https://github.com/FreshRSS/FreshRSS/issues/6796
This commit is contained in:
Alexandre Alapetite
2024-09-11 21:45:40 +02:00
committed by GitHub
parent e5320759eb
commit d1f1e42c2b

View File

@@ -187,8 +187,8 @@ class FreshRSS_auth_Controller extends FreshRSS_ActionController {
Minz_Request::forward(['c' => 'auth', 'a' => 'login'], false);
}
} elseif (FreshRSS_Context::systemConf()->unsafe_autologin_enabled) {
$username = Minz_Request::paramString('u');
$password = Minz_Request::paramString('p');
$username = Minz_Request::paramString('u', specialchars: true);
$password = Minz_Request::paramString('p', specialchars: true);
Minz_Request::_param('p');
if ($username === '') {