Commit 23423b46 authored by Dries's avatar Dries

- Check the destrination URL before redirecting.

parent 2fc74186
......@@ -605,7 +605,7 @@ function user_login($edit = array(), $msg = "") {
** Redirect the user to the page he logged on from.
*/
drupal_goto($edit["destination"]);
drupal_goto(check_url($edit["destination"]));
}
else {
if (!$error) {
......
......@@ -605,7 +605,7 @@ function user_login($edit = array(), $msg = "") {
** Redirect the user to the page he logged on from.
*/
drupal_goto($edit["destination"]);
drupal_goto(check_url($edit["destination"]));
}
else {
if (!$error) {
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment