diff --git a/JavaSource/gov/noaa/pmel/tmap/las/filter/RequestInputFilter.java b/JavaSource/gov/noaa/pmel/tmap/las/filter/RequestInputFilter.java index bf7868860..325c8d6f5 100644 --- a/JavaSource/gov/noaa/pmel/tmap/las/filter/RequestInputFilter.java +++ b/JavaSource/gov/noaa/pmel/tmap/las/filter/RequestInputFilter.java @@ -410,7 +410,10 @@ public boolean validateTemplates(HttpServletRequest request) { if ( value != null ) { for (int i = 0; i < value.length; i++) { String v = value[i]; - if (v.toLowerCase().contains(">") || v.toLowerCase().contains("<") || v.toLowerCase().contains("script")) { + if (v.toLowerCase().contains(">") || + v.toLowerCase().contains("<") || + v.toLowerCase().contains("script") || + v.toLowerCase().contains("..") ) { return false; } }