db_filter_ui: Fix a case where input wasn't escaped
This commit is contained in:
committed by
Chris Morgan
parent
d98e38e305
commit
3069294936
@@ -420,7 +420,7 @@ class FilterInterface
|
||||
{
|
||||
$sColumn = $this->escapeChars($oOption->getColumn());
|
||||
$i = sizeof($aReturn);
|
||||
$sData = $aClean["s{$sColumn}Data"];
|
||||
$sData = query_escape_string($aClean["s{$sColumn}Data"]);
|
||||
$iOp = $aClean["i{$sColumn}Op"];
|
||||
|
||||
|
||||
|
||||
Reference in New Issue
Block a user