Implemented method data filter to registration and login

This commit is contained in:
Gregorio Chiko Putra 2017-09-11 11:56:10 +07:00
parent 213f598631
commit 8ce3ce8387

View File

@ -38,6 +38,12 @@ class Home
// Login // Login
if ($args) { if ($args) {
// Avoid XSS
$args['exclude'] = [
'password'
];
$args = XSS::avoid($args);
$username = $args['username']; $username = $args['username'];
$password = $args['password']; $password = $args['password'];
@ -122,8 +128,13 @@ class Home
$args['salt'] = $salt; $args['salt'] = $salt;
$args['password'] = $password; $args['password'] = $password;
$args['full_name'] = htmlspecialchars($args['full_name']); // Avoid XSS attack
$args['username'] = htmlspecialchars($args['username']); // Exclude password and salt
$args['exclude'] = [
'salt',
'password'
];
$args = XSS::avoid($args);
$data = $this->model->showAll(); $data = $this->model->showAll();
foreach ($data as $users) { foreach ($data as $users) {