]> git.plutz.net Git - confetti/blobdiff - cards/edit_card.sh
path sanitizing for card parameter
[confetti] / cards / edit_card.sh
index 5a051949ae72c89e686aea1672440d16a4f39d27..61c58fe815c10cb456f5f9e3c73c4bd8d52c9c00 100755 (executable)
@@ -20,8 +20,8 @@
 locktimeout=900
 . "$_EXEC"/session_lock.sh
 
-card="$(GET card)"
-cardfile="$_DATA/vcard/$card"
+card="$(GET card |PATH)"
+cardfile="$_DATA/vcard/${card##*/}"
 filter="$(REF f)"
 order="$(REF o)"