diff options
Diffstat (limited to 'phpBB/includes/session.php')
-rw-r--r-- | phpBB/includes/session.php | 4 |
1 files changed, 3 insertions, 1 deletions
diff --git a/phpBB/includes/session.php b/phpBB/includes/session.php index 495fdcee48..8a9021b573 100644 --- a/phpBB/includes/session.php +++ b/phpBB/includes/session.php @@ -132,7 +132,7 @@ class session */ function session_begin($update_session_page = true) { - global $phpEx, $SID, $_SID, $db, $config, $phpbb_root_path; + global $phpEx, $SID, $_SID, $_EXTRA_URL, $db, $config, $phpbb_root_path; // Give us some basic information $this->time_now = time(); @@ -193,6 +193,8 @@ class session $SID = '?sid=' . $this->session_id; } + $_EXTRA_URL = array(); + // Why no forwarded_for et al? Well, too easily spoofed. With the results of my recent requests // it's pretty clear that in the majority of cases you'll at least be left with a proxy/cache ip. $this->ip = (!empty($_SERVER['REMOTE_ADDR'])) ? htmlspecialchars($_SERVER['REMOTE_ADDR']) : ''; |