From acde95751260e305da3d8d84b6b09dcd3b2d03b6 Mon Sep 17 00:00:00 2001 From: Joey Hess Date: Sun, 4 Jul 2010 16:12:50 -0400 Subject: [PATCH] further sanitize nickname characters --- IkiWiki/Plugin/openid.pm | 1 + 1 file changed, 1 insertion(+) diff --git a/IkiWiki/Plugin/openid.pm b/IkiWiki/Plugin/openid.pm index d393afd23..4727577f3 100644 --- a/IkiWiki/Plugin/openid.pm +++ b/IkiWiki/Plugin/openid.pm @@ -212,6 +212,7 @@ sub auth ($$) { } if (defined $nickname) { $nickname=~s/\s+/_/g; + $nickname=~s/[^-_0-9[:alnum:]]+//g; $session->param(nickname => $nickname); } }