Added sanitization to API logic

This commit is contained in:
Josh Pruim 2012-12-01 21:48:47 -08:00
parent 4a43fd7ecb
commit c44b6eabdd

View file

@ -331,12 +331,12 @@ exports.createPad = function(padID, text, callback)
callback(new customError("createPad can't create group pads","apierror")); callback(new customError("createPad can't create group pads","apierror"));
return; return;
} }
padID = padID.replace(/[^a-z0-9_\-]/gi, '_');
//create pad //create pad
getPadSafe(padID, false, text, function(err) getPadSafe(padID, false, text, function(err)
{ {
if(ERR(err, callback)) return; if(ERR(err, callback)) return;
callback(); callback(null, {padID: padID});
}); });
} }