diff --git a/lib/headers.php b/lib/headers.php index 3834271..e8f9aaf 100644 --- a/lib/headers.php +++ b/lib/headers.php @@ -1,6 +1,6 @@
CSRF issue:
- REQUEST: ".$_REQUEST["csrf"]."
- SESSION: ".$_SESSION["csrf"]."
- FILE: ".$_SERVER["SCRIPT_NAME"]."
- GET: ".var_export($_GET, true)."
- POST: ".var_export($_POST, true)."
+ REQUEST: ".$req."
+ SESSION: ".xssClean($_SESSION["csrf"],"html")."
+ FILE: ".xssClean($_SERVER["SCRIPT_NAME"],"html")."
+ GET: ".xssClean(var_export($_GET, true),"html")."
+ POST: ".xssClean(var_export($_POST, true),"html")."

Many thanks!"); }