From d9973c3f293d5a12c689b2e68b25d678a185c798 Mon Sep 17 00:00:00 2001 From: James W Thorne Date: Wed, 11 Jan 2017 21:42:35 -0600 Subject: [PATCH] Don't allow zero length form submissions --- snappass/main.py | 3 +++ 1 file changed, 3 insertions(+) diff --git a/snappass/main.py b/snappass/main.py index 30f6926..c72a52b 100644 --- a/snappass/main.py +++ b/snappass/main.py @@ -74,6 +74,9 @@ def clean_input(): if 'password' not in request.form: abort(400) + if not len(request.form['password']) > 0: + abort(400) + if 'ttl' not in request.form: abort(400)