mirror of
https://github.com/Piwigo/Piwigo.git
synced 2026-06-02 04:15:05 +02:00
bug 2971: i.php should escape source location
git-svn-id: http://piwigo.org/svn/trunk@28198 68402e56-0260-453c-a942-63ccdbb3a9ee
This commit is contained in:
@@ -468,7 +468,7 @@ if (strpos($page['src_location'], '/pwg_representative/')===false
|
|||||||
$query = '
|
$query = '
|
||||||
SELECT *
|
SELECT *
|
||||||
FROM '.$prefixeTable.'images
|
FROM '.$prefixeTable.'images
|
||||||
WHERE path=\''.$page['src_location'].'\'
|
WHERE path=\''.addslashes($page['src_location']).'\'
|
||||||
;';
|
;';
|
||||||
|
|
||||||
if ( ($row=pwg_db_fetch_assoc(pwg_query($query))) )
|
if ( ($row=pwg_db_fetch_assoc(pwg_query($query))) )
|
||||||
|
|||||||
Reference in New Issue
Block a user