|
From: Benjamin C. <bc...@us...> - 2002-01-05 12:57:37
|
Update of /cvsroot/phpbt/phpbt
In directory usw-pr-cvs1:/tmp/cvs-serv15885
Modified Files:
query.php
Log Message:
Fixes bug #498187 -- needed to addslashes to entries in the project, component, and version select boxes
Index: query.php
===================================================================
RCS file: /cvsroot/phpbt/phpbt/query.php,v
retrieving revision 1.50
retrieving revision 1.51
diff -u -r1.50 -r1.51
--- query.php 2001/12/24 21:23:50 1.50
+++ query.php 2002/01/05 12:57:34 1.51
@@ -55,11 +55,13 @@
p.project_id, p.project_name order by project_name');
}
while (list($pid, $pname) = $q->grab()) {
+ $pname = addslashes($pname);
// Version array
$js .= "versions['$pname'] = new Array(new Array('','All'),";
$nq->query("select version_name, version_id from ".TBL_VERSION.
" where project_id = $pid and active = 1");
while (list($version,$vid) = $nq->grab()) {
+ $version = addslashes($version);
$js .= "new Array($vid,'$version'),";
}
if (substr($js,-1) == ',') $js = substr($js,0,-1);
@@ -70,6 +72,7 @@
$nq->query("select component_name, component_id from ".TBL_COMPONENT.
" where project_id = $pid and active = 1");
while (list($comp,$cid) = $nq->grab()) {
+ $comp = addslashes($comp);
$js .= "new Array($cid,'$comp'),";
}
if (substr($js,-1) == ',') $js = substr($js,0,-1);
|