From 3a7c3f0b54cd0558c40726ae02d086cd8f1102af Mon Sep 17 00:00:00 2001 From: mrfry Date: Mon, 12 Oct 2020 17:41:28 +0200 Subject: [PATCH] SQL thingy fix, oops vol 2 --- src/modules/api/api.js | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/src/modules/api/api.js b/src/modules/api/api.js index 489f2ad..77da458 100644 --- a/src/modules/api/api.js +++ b/src/modules/api/api.js @@ -393,7 +393,10 @@ function GetApp() { app.post('/login', (req, res) => { logger.LogReq(req) const pw = req.body.pw - ? req.body.pw.replace("'", '').replace('"', '') + ? req.body.pw + .replace(/'/g, '') + .replace(/"/g, '') + .replace(/;/g, '') : false const cid = req.body.cid const isScript = req.body.script