diff --git a/Rocksolid_Light/spoolnews/user.php b/Rocksolid_Light/spoolnews/user.php index 1e4a61d..8618219 100644 --- a/Rocksolid_Light/spoolnews/user.php +++ b/Rocksolid_Light/spoolnews/user.php @@ -292,7 +292,7 @@ if (isset($_POST['command']) && $_POST['command'] == 'SaveConfig') { } } $user_config['signature'] = $_POST['signature']; - $user_config['xface'] = $_POST['xface']; + $user_config['xface'] = preg_replace("/[\n\r]/", "", $_POST['xface']); $user_config['timezone'] = $_POST['timezone']; $user_config['theme'] = $_POST['theme']; $user_config['hide_unsub'] = $_POST['hide_unsub']; @@ -381,7 +381,7 @@ if (isset($_REQUEST['command']) && $_REQUEST['command'] == 'Configuration') { $display_name = $_POST['display_name']; $display_email = $_POST['display_email']; $user_config['signature'] = $_POST['signature']; - $user_config['xface'] = urldecode($_POST['xface']); + $user_config['xface'] = preg_replace("/[\n\r]/", "", urldecode($_POST['xface'])); $user_config['hide_unsub'] = $_POST['hide_unsub']; $user_config['subscribed'] = $_POST['subscribed']; $user_config['theme'] = $_POST['theme'];