diff options
author | Stefan Giehl <stefan@piwik.org> | 2018-09-30 23:20:23 +0300 |
---|---|---|
committer | diosmosis <diosmosis@users.noreply.github.com> | 2018-09-30 23:20:23 +0300 |
commit | 0e3702128ab244017339fcee5895b835f8b76de2 (patch) | |
tree | 683eb3a57c822a62231c38eb3aeb9f32f1e24da0 /plugins/CustomVariables | |
parent | 1018195c634ca3403b3cc689dfd217fd39fc7b14 (diff) |
Ensure idSite is set correctly for custom variable management (#13510)
Diffstat (limited to 'plugins/CustomVariables')
-rw-r--r-- | plugins/CustomVariables/Controller.php | 6 |
1 files changed, 5 insertions, 1 deletions
diff --git a/plugins/CustomVariables/Controller.php b/plugins/CustomVariables/Controller.php index e73e58b257..432fb582d2 100644 --- a/plugins/CustomVariables/Controller.php +++ b/plugins/CustomVariables/Controller.php @@ -11,12 +11,16 @@ namespace Piwik\Plugins\CustomVariables; use Piwik\Common; use Piwik\DataTable; use Piwik\Piwik; +use Piwik\Site; class Controller extends \Piwik\Plugin\Controller { public function manage() { - $idSite = Common::getRequestVar('idSite'); + $idSite = Common::getRequestVar('idSite', null, 'int'); + + // check the site exists + $site = new Site($idSite); Piwik::checkUserHasAdminAccess($idSite); |