diff options
-rw-r--r-- | includes/database.mysql.inc | 2 | ||||
-rw-r--r-- | includes/database.mysqli.inc | 2 |
2 files changed, 2 insertions, 2 deletions
diff --git a/includes/database.mysql.inc b/includes/database.mysql.inc index 2f771d9e6..d816b6dd8 100644 --- a/includes/database.mysql.inc +++ b/includes/database.mysql.inc @@ -266,7 +266,7 @@ function db_decode_blob($data) { * Prepare user input for use in a database query, preventing SQL injection attacks. */ function db_escape_string($text) { - return addslashes($text); + return mysql_real_escape_string($text); } /** diff --git a/includes/database.mysqli.inc b/includes/database.mysqli.inc index f77709cf2..b0a5278d0 100644 --- a/includes/database.mysqli.inc +++ b/includes/database.mysqli.inc @@ -266,7 +266,7 @@ function db_decode_blob($data) { * Prepare user input for use in a database query, preventing SQL injection attacks. */ function db_escape_string($text) { - return addslashes($text); + return mysql_real_escape_string($text); } |