summaryrefslogtreecommitdiff
path: root/api/addFavorite.php
diff options
context:
space:
mode:
Diffstat (limited to 'api/addFavorite.php')
-rw-r--r--api/addFavorite.php3
1 files changed, 2 insertions, 1 deletions
diff --git a/api/addFavorite.php b/api/addFavorite.php
index 48e0036..e54e7e2 100644
--- a/api/addFavorite.php
+++ b/api/addFavorite.php
@@ -1,9 +1,10 @@
<?php
+header("X-Frame-Options: SAMEORIGIN");
require_once $_SERVER['DOCUMENT_ROOT'] . "/includes/session.php";
global $songs; global $_PROFILE; global $favorites;
-if (!isset($_GET["i"])) return;
+if (!isset($_GET["i"]) || !isset($songs[$_GET["i"]])) return;
if (!in_array($_GET["i"], $favorites)) {
$favorites[] = $_GET["i"];