#1345 Wiki tags : Creation fails if edit comment(s) contain "'"

v1.7.5
closed-fixed
nobody
2
2004-03-14
2004-02-26
No

When trying to make a wiki tag in 1.7.4, the following
error occurs:

Warning: MYSQL error: DB Error: syntax error in query:
replace into
tiki_tags(tagName,pageName,hits,data,lastModif,comment,version,user,ip,flag,description)
values('thursdayendfeb','Random data collection',10,'-=
Abstract =-\r\n\r\nRandom interactions are an
architectural building block of a Combined system. They
are conceived as anonymous interactions among the
members of the community of cooperating agents. The
importance of being anonymous while interacting is to
preserve the uniform appearance of the set of peers. As
long as the peers are able to respond to a request from
the communication initiator, their actual identity is
not important. Thus any peer is interchangeable with
the other.\r\n\r\n-= Details =-\r\n\r\n__Author(s)__:
((UserPagefilmil|Filip Miletić))\r\n__Download:__:
[http://wiki.decis.nl/wiki/tiki-download_wiki_attachment.php?attId=30|PDF]
\r\n',1076934718,'According to Stijn's comment,
uploaded and
updated',2,'filmil','130.161.37.190','','Random
Interaction of a COMBINED Syst in
/var/www/html/wiki/lib/tikilib.php on line 101

Discussion

  • Filip Miletic

    Filip Miletic - 2004-02-26
    • priority: 5 --> 8
     
  • Philippe Cloutier

    Logged In: YES
    user_id=738765

    Hi filmil,
    this fails because of 'According to Stijn's comment,
    uploaded and
    updated' which has an unescaped "'".
    This means that if edit comments to your pages have
    apostrophes the tag creation will fail.
    Fortunately, 1.8's ADOdb queries architecture solved this
    problem making sure the bindvars are escaped.
    Closing the bug ;)

     
  • Philippe Cloutier

    • labels: 544453 --> Database Error
    • summary: 1.7.4: Cannot make Wiki tags, query dies with an error --> Wiki tags : Creation fails if edit comment(s) contain "'"
    • milestone: --> v1.7.5
    • priority: 8 --> 2
    • status: open --> closed-fixed
     

Log in to post a comment.

Get latest updates about Open Source Projects, Conferences and News.

Sign up for the SourceForge newsletter:

JavaScript is required for this form.





No, thanks