Enable filtering in commentview.php and deletecomment.php
This commit is contained in:
@@ -10,20 +10,11 @@
|
||||
*/
|
||||
include("path.php");
|
||||
include(BASE."include/incl.php");
|
||||
include(BASE."include/filter.php");
|
||||
require_once(BASE."include/comment.php");
|
||||
|
||||
$aClean = array(); //array of filtered user input
|
||||
|
||||
$aClean['iAppId'] = makeSafe($_REQUEST['iAppId']);
|
||||
$aClean['iVersionId'] = makeSafe($_REQUEST['iVersionId']);
|
||||
$aClean['iThreadId'] = makeSafe($_REQUEST['iThreadId']);
|
||||
|
||||
apidb_header("Comments");
|
||||
|
||||
|
||||
if(!is_numeric($aClean['iAppId']) OR !is_numeric($aClean['iVersionId']) OR (!empty($aClean['iThreadId']) AND !is_numeric($aClean['iThreadId'])))
|
||||
util_show_error_page_and_exit("Wrong IDs");
|
||||
|
||||
view_app_comments($aClean['iVersionId'], $aClean['iThreadId']);
|
||||
|
||||
apidb_footer();
|
||||
|
||||
@@ -13,15 +13,10 @@
|
||||
// application environment
|
||||
include("path.php");
|
||||
require(BASE."include/incl.php");
|
||||
require(BASE."include/filter.php");
|
||||
require(BASE."include/application.php");
|
||||
require(BASE."include/mail.php");
|
||||
|
||||
$aClean = array(); //array of filtered user input
|
||||
|
||||
$aClean['sWhy'] = makeSafe($_REQUEST['sWhy']);
|
||||
$aClean['iCommentId'] = makeSafe($_REQUEST['iCommentId']);
|
||||
$aClean['iDeleteIt'] = makeSafe($_REQUEST['iDeleteIt']);
|
||||
|
||||
$oComment = new Comment($aClean['iCommentId']);
|
||||
|
||||
/**
|
||||
|
||||
Reference in New Issue
Block a user