summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--includes/database.mysql.inc2
-rw-r--r--includes/database.mysqli.inc2
2 files changed, 2 insertions, 2 deletions
diff --git a/includes/database.mysql.inc b/includes/database.mysql.inc
index 2f771d9e6..d816b6dd8 100644
--- a/includes/database.mysql.inc
+++ b/includes/database.mysql.inc
@@ -266,7 +266,7 @@ function db_decode_blob($data) {
* Prepare user input for use in a database query, preventing SQL injection attacks.
*/
function db_escape_string($text) {
- return addslashes($text);
+ return mysql_real_escape_string($text);
}
/**
diff --git a/includes/database.mysqli.inc b/includes/database.mysqli.inc
index f77709cf2..b0a5278d0 100644
--- a/includes/database.mysqli.inc
+++ b/includes/database.mysqli.inc
@@ -266,7 +266,7 @@ function db_decode_blob($data) {
* Prepare user input for use in a database query, preventing SQL injection attacks.
*/
function db_escape_string($text) {
- return addslashes($text);
+ return mysql_real_escape_string($text);
}