From 4af54d48f6b35188a2dc88b2e572ae5f5e33c850 Mon Sep 17 00:00:00 2001 From: barisusakli Date: Sat, 27 Sep 2014 19:23:48 -0400 Subject: [PATCH] closes #2169 --- src/controllers/index.js | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/src/controllers/index.js b/src/controllers/index.js index ec646a3800..228c477415 100644 --- a/src/controllers/index.js +++ b/src/controllers/index.js @@ -12,6 +12,7 @@ var topicsController = require('./topics'), async = require('async'), nconf = require('nconf'), + validator = require('validator'), winston = require('winston'), auth = require('../routes/authentication'), meta = require('../meta'), @@ -117,7 +118,7 @@ Controllers.search = function(req, res, next) { return res.redirect('/404'); } - req.params.term = req.params.term.replace(/"/g, '/"'); + req.params.term = validator.escape(req.params.term); search.search(req.params.term, uid, function(err, results) { if (err) {