From a9cdd90964afbe0437aa21d9c4da48ce1ef9af82 Mon Sep 17 00:00:00 2001 From: jc3 <jc3@jc3.aura> Date: Thu, 23 Jul 2020 15:36:29 -0700 Subject: [PATCH] added string check on name param --- js/query_sanitizer.js | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/js/query_sanitizer.js b/js/query_sanitizer.js index 66975fb..e6a42cf 100644 --- a/js/query_sanitizer.js +++ b/js/query_sanitizer.js @@ -41,6 +41,16 @@ module.exports = query_sanitizer = ( req_query ) => { } } + if( query_params.name ){ + + let name = query_params.name + if( typeof name !== "string" ){ + response.code = 400 + response.string = + `name must be a string` + } + } + let params = Object.assign( base_params, query_params ) return { params, response } -- GitLab