浏览代码

Don't allow double quotes in ns/caa.php actually

Miraty 2 年之前
父节点
当前提交
2e238f629d
共有 2 个文件被更改,包括 3 次插入3 次删除
  1. 1 1
      pg-act/ns/caa.php
  2. 2 2
      pg-view/ns/caa.php

+ 1 - 1
pg-act/ns/caa.php

@@ -8,7 +8,7 @@ if (!($_POST['flag'] >= 0 AND $_POST['flag'] <= 255))
 if (!(preg_match('/^[a-z0-9]{1,127}$/D', $_POST['tag'])))
 	output(403, 'Wrong value for <code>tag</code>.');
 
-if (!(preg_match('/^[a-zA-Z0-9 .,;"*|#~@=:!?%$+\/\()[\]_-]{1,255}$/D', $_POST['value'])))
+if (!(preg_match('/^[a-zA-Z0-9 .,;*|#~@=:!?%$+\/\()[\]_-]{1,255}$/D', $_POST['value'])))
 	output(403, 'Wrong value for <code>value</code>.');
 
 rateLimit();

+ 2 - 2
pg-view/ns/caa.php

@@ -6,11 +6,11 @@
 	<br>
 	<label for="tag"><?= _('Tag') ?></label>
 	<br>
-	<input id="tag" minlenght="1" maxlength="128" pattern="^[a-z]{1,127}$" placeholder="issue" name="tag" type="text">
+	<input id="tag" minlenght="1" maxlength="128" pattern="^[a-z0-9]{1,127}$" placeholder="issue" name="tag" type="text">
 	<br>
 	<label for="value"><?= _('Value') ?></label>
 	<br>
-	<input id="value" minlenght="3" maxlength="1024" pattern="^[a-zA-Z0-9 .,;&quot;*|#~@=:!?%$+\/\()[\]_-]{1,255}$" placeholder="letsencrypt.org" name="value" type="text">
+	<input id="value" minlenght="3" maxlength="1024" pattern="^[a-zA-Z0-9 .,;*|#~@=:!?%$+\/\()[\]_-]{1,255}$" placeholder="letsencrypt.org" name="value" type="text">
 	<br>
 	<input type="submit" value="<?= _('Apply') ?>">
 </form>