Fixed minor vulnerability in stats.php

This commit is contained in:
dosse91 2022-01-03 16:30:39 +01:00
parent 4234f5fad3
commit a85f2c086f

View file

@ -86,9 +86,9 @@ header('Pragma: no-cache');
$speedtest = getSpeedtestUserById($_GET['id']); $speedtest = getSpeedtestUserById($_GET['id']);
$speedtests = []; $speedtests = [];
if (false === $speedtest) { if (false === $speedtest) {
echo '<div>There was an error trying to fetch the speedtest result for ID "'.$_GET['id'].'".</div>'; echo '<div>There was an error trying to fetch the speedtest result for ID "'.htmlspecialchars($_GET['id'], ENT_HTML5, 'UTF-8').'".</div>';
} elseif (null === $speedtest) { } elseif (null === $speedtest) {
echo '<div>Could not find a speedtest result for ID "'.$_GET['id'].'".</div>'; echo '<div>Could not find a speedtest result for ID "'.htmlspecialchars($_GET['id'], ENT_HTML5, 'UTF-8').'".</div>';
} else { } else {
$speedtests = [$speedtest]; $speedtests = [$speedtest];
} }