diff --git a/include/util.php b/include/util.php index 8a32d3c..ce8cd4b 100644 --- a/include/util.php +++ b/include/util.php @@ -2,7 +2,8 @@ function makeSafe($var) { - $var = trim(addslashes($var)); +/* Disable addslashes() until we can use more finely grained filtering on user input */ +/* $var = trim(addslashes($var)); */ return $var; }