summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorMartin Herkt <lachs0r@srsfckn.biz>2017-01-01 21:03:38 +0100
committerMartin Herkt <lachs0r@srsfckn.biz>2017-01-01 21:20:40 +0100
commit714de58180072a5563ae1f3d96b8697892f20506 (patch)
tree2b7bfc469b57db64f3e55bcf6701ac2747bbfeac
parent6bc76907119e0f3be748d4fcb8919ba9f6db903a (diff)
add more URL validation
Turns out ShareX users and shell script authors are fucking retarded.
-rwxr-xr-xfhost.py2
1 files changed, 1 insertions, 1 deletions
diff --git a/fhost.py b/fhost.py
index 4874196..48a0c93 100755
--- a/fhost.py
+++ b/fhost.py
@@ -107,7 +107,7 @@ def shorten(url):
if len(url) > app.config["MAX_URL_LENGTH"]:
abort(414)
- if not url_valid(url) or is_fhost_url(url):
+ if not url_valid(url) or is_fhost_url(url) or "\n" in url:
abort(400)
existing = URL.query.filter_by(url=url).first()