From: Evan Prodromou Date: Fri, 29 Aug 2008 22:52:58 +0000 (-0400) Subject: clean up username entered at login X-Git-Url: https://git.mxchange.org/?a=commitdiff_plain;h=adeb19f1f7a82b17cee85ade1ac06fcd48e0d4cb;p=quix0rs-gnu-social.git clean up username entered at login darcs-hash:20080829225258-84dde-6fee5f0beea62f023c13436b8d7044241bc0d01a.gz --- diff --git a/actions/login.php b/actions/login.php index aa25a0cec5..f183c1cd45 100644 --- a/actions/login.php +++ b/actions/login.php @@ -39,7 +39,7 @@ class LoginAction extends Action { function check_login() { # XXX: form token in $_SESSION to prevent XSS # XXX: login throttle - $nickname = $this->arg('nickname'); + $nickname = common_canonical_nickname($this->trimmed('nickname')); $password = $this->arg('password'); if (common_check_user($nickname, $password)) { # success!