]> git.mxchange.org Git - quix0rs-gnu-social.git/commitdiff
clean up username entered at login
authorEvan Prodromou <evan@prodromou.name>
Fri, 29 Aug 2008 22:52:58 +0000 (18:52 -0400)
committerEvan Prodromou <evan@prodromou.name>
Fri, 29 Aug 2008 22:52:58 +0000 (18:52 -0400)
darcs-hash:20080829225258-84dde-6fee5f0beea62f023c13436b8d7044241bc0d01a.gz

actions/login.php

index aa25a0cec5fb3a179524100c5a0af15dd25290a2..f183c1cd45c5ab7ff57f84440a0e2f321679fc9d 100644 (file)
@@ -39,7 +39,7 @@ class LoginAction extends Action {
        function check_login() {
                # XXX: form token in $_SESSION to prevent XSS
                # XXX: login throttle
-               $nickname = $this->arg('nickname');
+               $nickname = common_canonical_nickname($this->trimmed('nickname'));
                $password = $this->arg('password');
                if (common_check_user($nickname, $password)) {
                        # success!