follow requests most adhere to site allow policy

This commit is contained in:
Friendika 2011-04-19 16:31:39 -07:00
parent a0179235d2
commit 29a48de5e2
2 changed files with 8 additions and 1 deletions

View file

@ -2,7 +2,7 @@
set_time_limit(0); set_time_limit(0);
define ( 'FRIENDIKA_VERSION', '2.1.953' ); define ( 'FRIENDIKA_VERSION', '2.1.954' );
define ( 'DFRN_PROTOCOL_VERSION', '2.21' ); define ( 'DFRN_PROTOCOL_VERSION', '2.21' );
define ( 'DB_UPDATE_VERSION', 1053 ); define ( 'DB_UPDATE_VERSION', 1053 );

View file

@ -12,6 +12,13 @@ function follow_post(&$a) {
$url = $orig_url = notags(trim($_POST['url'])); $url = $orig_url = notags(trim($_POST['url']));
if(! allowed_url($url)) {
notice( t('Disallowed profile URL.') . EOL);
goaway($_SESSION['return_url']);
// NOTREACHED
}
$ret = probe_url($url); $ret = probe_url($url);