From 3818c196e06b28983d2787bc3ec84fc0eb5b9817 Mon Sep 17 00:00:00 2001 From: Sam Date: Wed, 15 Feb 2017 16:47:14 -0500 Subject: [PATCH] remove disallowed params --- app/controllers/list_controller.rb | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/app/controllers/list_controller.rb b/app/controllers/list_controller.rb index 66487193800..898699692c6 100644 --- a/app/controllers/list_controller.rb +++ b/app/controllers/list_controller.rb @@ -286,6 +286,11 @@ class ListController < ApplicationController options[:topic_ids] = param_to_integer_list(:topic_ids) options[:no_subcategories] = options[:no_subcategories] == 'true' options[:slow_platform] = slow_platform? + options.delete(:per_page) + options.delete(:limit) + options.delete(:except_topic_ids) + options.delete(:visible) + options.delete(:no_definitions) options end