浏览代码

[Web] add max_age limit for MTA-STS policy

FreddleSpl0it 2 周之前
父节点
当前提交
8779d2f628
共有 1 个文件被更改,包括 2 次插入2 次删除
  1. 2 2
      data/web/inc/functions.mailbox.inc.php

+ 2 - 2
data/web/inc/functions.mailbox.inc.php

@@ -1433,7 +1433,7 @@ function mailbox($_action, $_type, $_data = null, $_extra = null) {
             );
             );
             return false;
             return false;
           }
           }
-          if (empty($max_age) || $max_age < 0) {
+          if (empty($max_age) || $max_age < 0 || $max_age > 31536000) {
             $_SESSION['return'][] = array(
             $_SESSION['return'][] = array(
               'type' => 'danger',
               'type' => 'danger',
               'log' => array(__FUNCTION__, $_action, $_type, $_data, $_attr),
               'log' => array(__FUNCTION__, $_action, $_type, $_data, $_attr),
@@ -3880,7 +3880,7 @@ function mailbox($_action, $_type, $_data = null, $_extra = null) {
               );
               );
               continue;
               continue;
             }
             }
-            if (empty($max_age) || $max_age < 0) {
+            if (empty($max_age) || $max_age < 0 || $max_age > 31557600) {
               $_SESSION['return'][] = array(
               $_SESSION['return'][] = array(
                 'type' => 'danger',
                 'type' => 'danger',
                 'log' => array(__FUNCTION__, $_action, $_type, $_data, $_attr),
                 'log' => array(__FUNCTION__, $_action, $_type, $_data, $_attr),