From adeb19f1f7a82b17cee85ade1ac06fcd48e0d4cb Mon Sep 17 00:00:00 2001 From: Evan Prodromou Date: Fri, 29 Aug 2008 18:52:58 -0400 Subject: clean up username entered at login darcs-hash:20080829225258-84dde-6fee5f0beea62f023c13436b8d7044241bc0d01a.gz --- actions/login.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'actions/login.php') diff --git a/actions/login.php b/actions/login.php index aa25a0cec..f183c1cd4 100644 --- a/actions/login.php +++ b/actions/login.php @@ -39,7 +39,7 @@ class LoginAction extends Action { function check_login() { # XXX: form token in $_SESSION to prevent XSS # XXX: login throttle - $nickname = $this->arg('nickname'); + $nickname = common_canonical_nickname($this->trimmed('nickname')); $password = $this->arg('password'); if (common_check_user($nickname, $password)) { # success! -- cgit v1.2.3-54-g00ecf