diff --git a/core/common/Language.php b/core/common/Language.php index 8e6f5ae96..617eefb5f 100644 --- a/core/common/Language.php +++ b/core/common/Language.php @@ -116,7 +116,7 @@ private function setLang($hardSetLang = 0) $langConverted[] = $_SESSION['language']; } if (!empty($_SERVER['HTTP_ACCEPT_LANGUAGE'])) { - $langs = explode(",", filter_input(INPUT_SERVER, "HTTP_ACCEPT_LANGUAGE", FILTER_SANITIZE_STRING)); + $langs = explode(",", htmlspecialchars(strip_tags($_SERVER['HTTP_ACCEPT_LANGUAGE'], ENT_QUOTES))); foreach ($langs as $lang) { $result = []; preg_match("/(.*);+.*/", $lang, $result);