From 5f00e07491cc29e7d353621744384d29417a21bd Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Hanno=20B=C3=B6ck?= Date: Fri, 30 Dec 2022 21:43:22 +0100 Subject: [PATCH] Check that the tag GET variable is a string. (#147) --- serendipity_event_freetag/serendipity_event_freetag.php | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/serendipity_event_freetag/serendipity_event_freetag.php b/serendipity_event_freetag/serendipity_event_freetag.php index a8841b29..9e651ee0 100644 --- a/serendipity_event_freetag/serendipity_event_freetag.php +++ b/serendipity_event_freetag/serendipity_event_freetag.php @@ -66,7 +66,7 @@ class serendipity_event_freetag extends serendipity_event 'smarty' => '2.6.7', 'php' => '7.0' )); - $propbag->add('version', '3.70.5'); + $propbag->add('version', '3.70.6'); $propbag->add('event_hooks', array( 'frontend_fetchentries' => true, 'frontend_fetchentry' => true, @@ -1170,7 +1170,7 @@ addLoadEvent(enableAutocomplete); } else { $showtag = serendipity_db_escape_string($this->tags['show']); } - } else if (!empty($serendipity['GET']['tag'])) { + } else if (!empty($serendipity['GET']['tag']) && is_string($serendipity['GET']['tag'])) { $showtag = serendipity_db_escape_string(urldecode($serendipity['GET']['tag'])); }