fix(security): resolve F-05 — add url validation to CCTV link update in CctvController

This commit is contained in:
root
2026-06-02 01:08:38 +08:00
parent aa054b89f9
commit 5644ef5f51

View File

@@ -24,7 +24,7 @@ class CctvController extends Controller
public function updateCctvLink(Request $request, $stationid) public function updateCctvLink(Request $request, $stationid)
{ {
$validated = $request->validate([ $validated = $request->validate([
'cctv_link' => 'nullable|string|max:500', 'cctv_link' => 'nullable|string|max:500|url',
]); ]);
DB::table('station')->where('stationid', $stationid)->update([ DB::table('station')->where('stationid', $stationid)->update([