From f7102f0d43bc1e2cc5fcdf027badac8333d41e1f Mon Sep 17 00:00:00 2001 From: HolgerHatGarKeineNode Date: Thu, 27 Nov 2025 15:57:06 +0100 Subject: [PATCH] =?UTF-8?q?=F0=9F=9A=A8=20Add=20numeric=20validation=20to?= =?UTF-8?q?=20`user=5Fid`=20in=20`MeetupController@index`?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- app/Http/Controllers/Api/MeetupController.php | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/app/Http/Controllers/Api/MeetupController.php b/app/Http/Controllers/Api/MeetupController.php index ef45546..d29dc31 100644 --- a/app/Http/Controllers/Api/MeetupController.php +++ b/app/Http/Controllers/Api/MeetupController.php @@ -17,6 +17,10 @@ class MeetupController extends Controller public function index(Request $request) { + if (!is_numeric($request->input('user_id'))) { + abort(404); + } + $myMeetupIds = User::query() ->findOrFail($request->input('user_id')) ?->meetups