diff --git a/app/Http/Controllers/Settings/HomeSettings.php b/app/Http/Controllers/Settings/HomeSettings.php index 591d3e451..940c1f81c 100644 --- a/app/Http/Controllers/Settings/HomeSettings.php +++ b/app/Http/Controllers/Settings/HomeSettings.php @@ -11,6 +11,7 @@ use App\UserFilter; use App\Util\Lexer\PrettyNumber; use Auth; use DB; +use Purify; use Illuminate\Http\Request; trait HomeSettings @@ -40,8 +41,8 @@ trait HomeSettings ]); $changes = false; - $name = $request->input('name'); - $bio = $request->input('bio'); + $name = strip_tags($request->input('name')); + $bio = Purify::clean($request->input('bio')); $website = $request->input('website'); $email = $request->input('email'); $user = Auth::user();