summaryrefslogtreecommitdiff
path: root/src
diff options
context:
space:
mode:
authorMan Yue Mo <mmo@semmle.com>2018-02-07 08:43:07 +0000
committerMan Yue Mo <mmo@semmle.com>2018-02-07 08:43:07 +0000
commita2992b3624ba283b56877ab70a3e2226ed7a8125 (patch)
treecbf1db684bc50e825dfcd8471fd2a268107b80cd /src
parent0c9475e366622e784737f6bdaec14c00bd0765d7 (diff)
downloadetherpad-lite-a2992b3624ba283b56877ab70a3e2226ed7a8125.zip
fix jsonp checking.
Diffstat (limited to 'src')
-rw-r--r--src/node/hooks/express/apicalls.js2
1 files changed, 1 insertions, 1 deletions
diff --git a/src/node/hooks/express/apicalls.js b/src/node/hooks/express/apicalls.js
index 4482fd84..009a93d7 100644
--- a/src/node/hooks/express/apicalls.js
+++ b/src/node/hooks/express/apicalls.js
@@ -19,7 +19,7 @@ var apiCaller = function(req, res, fields) {
apiLogger.info("RESPONSE, " + req.params.func + ", " + response);
//is this a jsonp call, if yes, add the function call
- if(req.query.jsonp && isVarName(response))
+ if(req.query.jsonp && isVarName(req.query.jsonp))
response = req.query.jsonp + "(" + response + ")";
res._____send(response);