Skip to content

Commit 8b4482e

Browse files
committed
[core] Check on invalid entries param (for cms saveEntries)
1 parent cd893d8 commit 8b4482e

File tree

1 file changed

+11
-0
lines changed

1 file changed

+11
-0
lines changed

api/parts/mgmt/cms.js

Lines changed: 11 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -157,6 +157,17 @@ function syncCMSDataToDB(params) {
157157
}
158158

159159
cmsApi.saveEntries = function(params) {
160+
161+
var entries = [];
162+
try {
163+
entries = JSON.parse(params.qstring.entries);
164+
}
165+
catch (ex) {
166+
log.e(entries);
167+
common.returnMessage(params, 400, 'Invalid entries parameter');
168+
return;
169+
}
170+
160171
transformAndStoreData(
161172
Object.assign({dataTransformed: true}, params),
162173
null,

0 commit comments

Comments
 (0)