diff options
author | Dries Buytaert <dries@buytaert.net> | 2001-03-07 21:29:40 +0000 |
---|---|---|
committer | Dries Buytaert <dries@buytaert.net> | 2001-03-07 21:29:40 +0000 |
commit | f516626a293edd613cb823db88e36dcf7e1fb8f4 (patch) | |
tree | ba3dd7432d4d13783e34fbc50a4d4308a142309b /modules/locale | |
parent | 2b2e81f6cfce285f466c3c74cb25ad30c581d2cf (diff) | |
download | brdo-f516626a293edd613cb823db88e36dcf7e1fb8f4.tar.gz brdo-f516626a293edd613cb823db88e36dcf7e1fb8f4.tar.bz2 |
A rather large and important update:
revised most of the SQL queries and tried to make drupal as secure as possible (while trying to avoid redundant/duplicate checks). For drupal's sake, try to screw something up. See the mail about PHPNuke being hacked appr. 6 days ago. The one who finds a problem is rewarded a beer (and I'm willing to ship it to Norway if required). I beg you to be evil. Try dumping a table a la "http://localhost/index.php?date=77778;DROP TABLE users" or something. ;)
Diffstat (limited to 'modules/locale')
-rw-r--r-- | modules/locale/locale.module | 6 |
1 files changed, 3 insertions, 3 deletions
diff --git a/modules/locale/locale.module b/modules/locale/locale.module index 464b3bc41..c96d9a0dc 100644 --- a/modules/locale/locale.module +++ b/modules/locale/locale.module @@ -84,17 +84,17 @@ function locale_admin() { switch ($op) { case "delete": - locale_delete($id); + locale_delete(check_input($id)); locale_display(); break; case "help": locale_help(); break; case "edit": - locale_edit($id); + locale_edit(check_input($id)); break; case "Save translations": - locale_save($id, $edit); + locale_save(check_input($id), $edit); // fall through default: locale_display(); |