Fix to address XSS issues #1

This commit is contained in:
Ilia Ross
2023-08-09 16:49:40 +03:00
parent 864e0c4918
commit e6105bb757

View File

@ -151,7 +151,7 @@ if ($config{'log_read'}) {
sub show_arrows
{
my $link = "list_mail.cgi?user=".&urlize($in{'user'})."&folder=".$in{'folder'};
my $link = "list_mail.cgi?user=".&urlize($in{'user'})."&folder=".&urlize($in{'folder'});
my $left = $in{'start'} ?
$link."&start=".($in{'start'}-$perpage) : undef;
my $right = $in{'start'}+$perpage < @mail ?