Skip to content

Commit b71874b

Browse files
authored
Merge pull request #65 from terrorfall/xss-patch
Xss patch
2 parents 536c483 + 2acbbde commit b71874b

File tree

2 files changed

+4
-2
lines changed

2 files changed

+4
-2
lines changed

src/App/Http/Controllers/UsersManagementController.php

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -91,7 +91,7 @@ public function create()
9191
public function store(Request $request)
9292
{
9393
$rules = [
94-
'name' => 'required|string|max:255|unique:users',
94+
'name' => 'required|string|max:255|unique:users|alpha_dash',
9595
'email' => 'required|email|max:255|unique:users',
9696
'password' => 'required|string|confirmed|min:6',
9797
'password_confirmation' => 'required|string|same:password',
@@ -104,6 +104,7 @@ public function store(Request $request)
104104
$messages = [
105105
'name.unique' => trans('laravelusers::laravelusers.messages.userNameTaken'),
106106
'name.required' => trans('laravelusers::laravelusers.messages.userNameRequired'),
107+
'name' => trans('laravelusers::laravelusers.messages.userNameInvalid'),
107108
'email.required' => trans('laravelusers::laravelusers.messages.emailRequired'),
108109
'email.email' => trans('laravelusers::laravelusers.messages.emailInvalid'),
109110
'password.required' => trans('laravelusers::laravelusers.messages.passwordRequired'),
@@ -199,7 +200,7 @@ public function update(Request $request, $id)
199200
];
200201

201202
if ($emailCheck) {
202-
$rules['email'] = 'required|email|max:255|unique:users';
203+
$rules['email'] = 'required|email|max:255|unique:users|alpha_dash';
203204
}
204205

205206
if ($passwordCheck) {

src/resources/lang/en/laravelusers.php

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -54,6 +54,7 @@
5454
'messages' => [
5555
'userNameTaken' => 'Username is taken',
5656
'userNameRequired' => 'Username is required',
57+
'userNameInvalid' => 'Username is invalid',
5758
'fNameRequired' => 'First Name is required',
5859
'lNameRequired' => 'Last Name is required',
5960
'emailRequired' => 'Email is required',

0 commit comments

Comments
 (0)