This commit is contained in:
2023-07-09 12:44:04 +02:00
parent 6f919dbebd
commit 34d79fcfc8

View File

@ -3775,13 +3775,13 @@ function save_setup(array $C): void
{ {
global $db; global $db;
//sanity checks and escaping //sanity checks and escaping
foreach($C['msg_settings'] as $setting){ foreach($C['msg_settings'] as $setting => $title){
$_POST[$setting]=htmlspecialchars($_POST[$setting]); $_POST[$setting]=htmlspecialchars($_POST[$setting]);
} }
foreach($C['number_settings'] as $setting){ foreach($C['number_settings'] as $setting => $title){
settype($_POST[$setting], 'int'); settype($_POST[$setting], 'int');
} }
foreach($C['colour_settings'] as $setting){ foreach($C['colour_settings'] as $setting => $title){
if(preg_match('/^#([a-f0-9]{6})$/i', $_POST[$setting], $match)){ if(preg_match('/^#([a-f0-9]{6})$/i', $_POST[$setting], $match)){
$_POST[$setting]=$match[1]; $_POST[$setting]=$match[1];
}else{ }else{