diff options
author | Steven Wittens <steven@10.no-reply.drupal.org> | 2002-10-15 23:17:15 +0000 |
---|---|---|
committer | Steven Wittens <steven@10.no-reply.drupal.org> | 2002-10-15 23:17:15 +0000 |
commit | c238481f02c38170429e9025a0798c6cb6eb1e7f (patch) | |
tree | 5c2263b6badbed3807574ebeb636d8c335ef46aa /modules | |
parent | c5da43fa402f06c95c8a2d294c11bc2d0c401718 (diff) | |
download | brdo-c238481f02c38170429e9025a0798c6cb6eb1e7f.tar.gz brdo-c238481f02c38170429e9025a0798c6cb6eb1e7f.tar.bz2 |
- Fixed missing filtering
Diffstat (limited to 'modules')
-rw-r--r-- | modules/poll.module | 6 | ||||
-rw-r--r-- | modules/poll/poll.module | 6 |
2 files changed, 6 insertions, 6 deletions
diff --git a/modules/poll.module b/modules/poll.module index 0073e281c..d335ba59f 100644 --- a/modules/poll.module +++ b/modules/poll.module @@ -136,7 +136,7 @@ function poll_insert($node) { $node->active = 1; } - db_query("INSERT INTO poll (nid, runtime, voters, active) VALUES ('". check_input($node->nid) ."', '". check_input($node->runtime) ."', '', '". check_input($node->active) ."')"); + db_query("INSERT INTO poll (nid, runtime, voters, active) VALUES ('". check_query($node->nid) ."', '". check_query($node->runtime) ."', '', '". check_query($node->active) ."')"); for ($i = 0; $i < $node->choices; $i++) { $choice->chtext = filter($node->choice[$i]); @@ -144,7 +144,7 @@ function poll_insert($node) { $choice->chorder = $i; if ($choice->chtext != "") { - db_query("INSERT INTO poll_choices (nid, chtext, chvotes, chorder) VALUES ('". check_input($node->nid) ."', '". check_input($choice->chtext) ."', '". check_input($choice->chvotes) ."', '". check_input($choice->chorder) ."')"); + db_query("INSERT INTO poll_choices (nid, chtext, chvotes, chorder) VALUES ('". check_query($node->nid) ."', '". check_query($choice->chtext) ."', '". check_query($choice->chvotes) ."', '". check_query($choice->chorder) ."')"); } } } @@ -404,7 +404,7 @@ function poll_update($node) { $choice->chorder = $i; if ($choice->chtext != "") { - db_query("INSERT INTO poll_choices (nid, chtext, chvotes, chorder) VALUES ('". check_input($node->nid) ."', '". check_input($choice->chtext) ."', '". check_input($choice->chvotes) ."', '". check_input($choice->chorder) ."')"); + db_query("INSERT INTO poll_choices (nid, chtext, chvotes, chorder) VALUES ('". check_query($node->nid) ."', '". check_query($choice->chtext) ."', '". check_query($choice->chvotes) ."', '". check_query($choice->chorder) ."')"); } } } diff --git a/modules/poll/poll.module b/modules/poll/poll.module index 0073e281c..d335ba59f 100644 --- a/modules/poll/poll.module +++ b/modules/poll/poll.module @@ -136,7 +136,7 @@ function poll_insert($node) { $node->active = 1; } - db_query("INSERT INTO poll (nid, runtime, voters, active) VALUES ('". check_input($node->nid) ."', '". check_input($node->runtime) ."', '', '". check_input($node->active) ."')"); + db_query("INSERT INTO poll (nid, runtime, voters, active) VALUES ('". check_query($node->nid) ."', '". check_query($node->runtime) ."', '', '". check_query($node->active) ."')"); for ($i = 0; $i < $node->choices; $i++) { $choice->chtext = filter($node->choice[$i]); @@ -144,7 +144,7 @@ function poll_insert($node) { $choice->chorder = $i; if ($choice->chtext != "") { - db_query("INSERT INTO poll_choices (nid, chtext, chvotes, chorder) VALUES ('". check_input($node->nid) ."', '". check_input($choice->chtext) ."', '". check_input($choice->chvotes) ."', '". check_input($choice->chorder) ."')"); + db_query("INSERT INTO poll_choices (nid, chtext, chvotes, chorder) VALUES ('". check_query($node->nid) ."', '". check_query($choice->chtext) ."', '". check_query($choice->chvotes) ."', '". check_query($choice->chorder) ."')"); } } } @@ -404,7 +404,7 @@ function poll_update($node) { $choice->chorder = $i; if ($choice->chtext != "") { - db_query("INSERT INTO poll_choices (nid, chtext, chvotes, chorder) VALUES ('". check_input($node->nid) ."', '". check_input($choice->chtext) ."', '". check_input($choice->chvotes) ."', '". check_input($choice->chorder) ."')"); + db_query("INSERT INTO poll_choices (nid, chtext, chvotes, chorder) VALUES ('". check_query($node->nid) ."', '". check_query($choice->chtext) ."', '". check_query($choice->chvotes) ."', '". check_query($choice->chorder) ."')"); } } } |