summaryrefslogtreecommitdiff
path: root/plugins
diff options
context:
space:
mode:
authorAndrew Dolgov <[email protected]>2014-01-17 13:41:27 +0400
committerAndrew Dolgov <[email protected]>2014-01-17 13:41:27 +0400
commit4c63934bacb628789897dc2e599e5aa30e76ccd5 (patch)
tree0654fd723f5f0478b4cfa65a9d8e27421b3deae7 /plugins
parent07083d9caad0073327ef2a39a895965f7a483491 (diff)
increase randomness of shared url keys a bit
Diffstat (limited to 'plugins')
-rw-r--r--plugins/instances/init.php4
-rw-r--r--plugins/share/init.php4
2 files changed, 4 insertions, 4 deletions
diff --git a/plugins/instances/init.php b/plugins/instances/init.php
index 069186ad1..2de0e5fd2 100644
--- a/plugins/instances/init.php
+++ b/plugins/instances/init.php
@@ -407,7 +407,7 @@ class Instances extends Plugin implements IHandler {
print "<hr/>";
- $access_key = uniqid();
+ $access_key = uniqid(rand(), true);
/* Access key */
@@ -439,7 +439,7 @@ class Instances extends Plugin implements IHandler {
}
function genHash() {
- $hash = uniqid();
+ $hash = uniqid(base_convert(rand(), 10, 36));
print json_encode(array("hash" => $hash));
}
diff --git a/plugins/share/init.php b/plugins/share/init.php
index 5fa998757..899677c32 100644
--- a/plugins/share/init.php
+++ b/plugins/share/init.php
@@ -60,7 +60,7 @@ class Share extends Plugin {
function newkey() {
$id = db_escape_string($_REQUEST['id']);
- $uuid = db_escape_string(uniqid());
+ $uuid = db_escape_string(uniqid(base_convert(rand(), 10, 36)));
db_query("UPDATE ttrss_user_entries SET uuid = '$uuid' WHERE int_id = '$id'
AND owner_uid = " . $_SESSION['uid']);
@@ -91,7 +91,7 @@ class Share extends Plugin {
$ref_id = db_fetch_result($result, 0, "ref_id");
if (!$uuid) {
- $uuid = db_escape_string(uniqid());
+ $uuid = db_escape_string(uniqid(base_convert(rand(), 10, 36)));
db_query("UPDATE ttrss_user_entries SET uuid = '$uuid' WHERE int_id = '$param'
AND owner_uid = " . $_SESSION['uid']);
}