diff --git a/src/MicroweberPackages/App/Http/Controllers/ApiController.php b/src/MicroweberPackages/App/Http/Controllers/ApiController.php index 6d628263d5b..9e72121a9e6 100644 --- a/src/MicroweberPackages/App/Http/Controllers/ApiController.php +++ b/src/MicroweberPackages/App/Http/Controllers/ApiController.php @@ -611,10 +611,15 @@ public function module() $request_data_new = []; $antixss = new AntiXSS(); foreach ($request_data as $k=>$v){ - + if(is_string($v)) { + $v = str_replace('<', '-', $v); + $v = str_replace('>', '-', $v); + } $v = $antixss->xss_clean($v); if(is_string($k)){ + $k = str_replace('<', '-', $k); + $k = str_replace('>', '-', $k); $k = $antixss->xss_clean($k); if($k){ $request_data_new[$k] = $v; @@ -622,7 +627,7 @@ public function module() } else { $request_data_new[$k] = $v; } - + } $request_data = $request_data_new; }