Browse code

Added < and > to blocked characters

Jaidyn Lev authored on 2018-11-10 19:59:04
Showing 1 changed files
... ...
@@ -5,7 +5,7 @@
5 5
 //	Sanitize a filename by replacing common suspicious characters with "_".
6 6
 function sanitize_filename($filename)
7 7
 {
8
-	$death_characters = array(" ", ",", "/", "\\", "%", "$", "^");
8
+	$death_characters = array(" ", ",", "<", ">", "/", "\\", "%", "$", "^");
9 9
 	$death_filetypes = array(".php", ".sh", ".lisp", ".cl", ".cgi", ".pl");
10 10
 
11 11
 	$sanitized_filename = str_replace($death_characters, "_", $filename);