We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent f30ce58 commit 9d364f6Copy full SHA for 9d364f6
demo/index.php
@@ -10,14 +10,8 @@ function get($name, $default = '')
10
return $default;
11
}
12
13
- if ($name === 'url') {
14
- $url = urldecode($_GET['url']);
15
-
16
- if (!filter_var($url, FILTER_VALIDATE_URL)) {
17
- return 'http://doNotTryToXSS.invalid';
18
- }
19
20
- return $url;
+ if ($name === 'url' && !filter_var($_GET['url'], FILTER_VALIDATE_URL)) {
+ return 'http://doNotTryToXSS.invalid';
21
22
23
return $_GET[$name];
0 commit comments