gitlab-org--gitlab-foss/app/controllers/concerns/continue_params.rb

15 lines
392 B
Ruby
Raw Normal View History

2016-03-07 09:36:16 +00:00
module ContinueParams
extend ActiveSupport::Concern
def continue_params
continue_params = params[:continue]
return nil unless continue_params
2016-03-07 10:45:14 +00:00
continue_params = continue_params.permit(:to, :notice, :notice_now)
2016-03-07 09:36:16 +00:00
return unless continue_params[:to] && continue_params[:to].start_with?('/')
return if continue_params[:to].start_with?('//')
continue_params
end
end