diff --git a/upload/source/include/spacecp/spacecp_pm.php b/upload/source/include/spacecp/spacecp_pm.php index f852b68..9a24ef1 100644 --- a/upload/source/include/spacecp/spacecp_pm.php +++ b/upload/source/include/spacecp/spacecp_pm.php @@ -376,7 +376,7 @@ if($_GET['op'] == 'checknewpm') { } $username = $_GET['username']; - if(!$username || !uc_get_user($username)) { + if(!$username || !uc_get_user(addslashes($username))) { showmessage('pm_ignore_error_nopm'); }