diff --git a/src/server/routes/authRoutes.ts b/src/server/routes/authRoutes.ts index d2cd0a4..41404eb 100644 --- a/src/server/routes/authRoutes.ts +++ b/src/server/routes/authRoutes.ts @@ -142,8 +142,8 @@ authRoutes.post("/customcss", parser, (req,res) => { } if (typeof req.body.fileId != "string") return - - if (id_check_regex.test(req.body.fileId) && req.body.fileId.length <= config.maxUploadIdLength) { + + if (req.body.fileId.match(id_check_regex) == req.body.fileId && req.body.fileId.length <= config.maxUploadIdLength) { acc.customCSS = req.body.fileId if (!req.body.fileId) delete acc.customCSS Accounts.save() diff --git a/src/svelte/elem/pulldowns/Accounts.svelte b/src/svelte/elem/pulldowns/Accounts.svelte index e91f775..0fe571e 100644 --- a/src/svelte/elem/pulldowns/Accounts.svelte +++ b/src/svelte/elem/pulldowns/Accounts.svelte @@ -170,7 +170,7 @@