diff options
Diffstat (limited to 'modules/user.module')
-rw-r--r-- | modules/user.module | 6 |
1 files changed, 3 insertions, 3 deletions
diff --git a/modules/user.module b/modules/user.module index 2f7d0e3d2..1a32043e1 100644 --- a/modules/user.module +++ b/modules/user.module @@ -901,14 +901,14 @@ function user_edit($edit = array()) { /* ** Validate input fields to make sure users don't submit - ** invalid form. + ** invalid form data. */ if (!user_access("administer users")) { - if (array_intersect(array_keys($array), array("rid", "init", "rating", "session"))) { + if (array_intersect(array_keys($edit), array("rid", "init", "rating", "session"))) { watchdog("warning", "detected malicious attempt to alter a protected database field"); } - + $edit["rid"] = $user->rid; $edit["init"] = $user->init; $edit["rating"] = $user->rating; |