diff --git a/data/web/inc/functions.mailbox.inc.php b/data/web/inc/functions.mailbox.inc.php index d6a07eab..788b207f 100644 --- a/data/web/inc/functions.mailbox.inc.php +++ b/data/web/inc/functions.mailbox.inc.php @@ -339,6 +339,8 @@ function mailbox($_action, $_type, $_data = null, $_extra = null) { // validate custom params foreach (explode(' -', $custom_params) as $param){ + if(empty($param)) continue; + if (str_contains($param, ' ')) { // bad char $_SESSION['return'][] = array( @@ -1792,6 +1794,8 @@ function mailbox($_action, $_type, $_data = null, $_extra = null) { // validate custom params foreach (explode(' -', $custom_params) as $param){ + if(empty($param)) continue; + if (str_contains($param, ' ')) { // bad char $_SESSION['return'][] = array(