kill url injection when using 'PHP_SELF'


/ Published in: PHP
Save to your folder(s)

kill url injection when using 'PHP_SELF' in forms


Copy this code and paste it in your HTML
  1. $_SERVER['PHP_SELF'] = htmlspecialchars($_SERVER['PHP_SELF']);

Report this snippet


Comments


You need to login to view comments.