diff --git a/lib/common.lib.php b/lib/common.lib.php index 53eb1f1df..091ba8cb4 100644 --- a/lib/common.lib.php +++ b/lib/common.lib.php @@ -2367,12 +2367,8 @@ function hyphen_hp_number($hp) function login_url($url='') { if (!$url) $url = G5_URL; - /* - $p = parse_url($url); - echo urlencode($_SERVER['REQUEST_URI']); - return $url.urldecode(preg_replace("/^".urlencode($p['path'])."/", "", urlencode($_SERVER['REQUEST_URI']))); - */ - return $url; + + return urlencode(clean_xss_tags($url)); } diff --git a/mobile/skin/member/basic/login.skin.php b/mobile/skin/member/basic/login.skin.php index 3274b7dd8..3d704f392 100644 --- a/mobile/skin/member/basic/login.skin.php +++ b/mobile/skin/member/basic/login.skin.php @@ -9,7 +9,7 @@ add_stylesheet('',