summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--submit.php2
1 files changed, 1 insertions, 1 deletions
diff --git a/submit.php b/submit.php
index e4bd2b4da..fb06dfc41 100644
--- a/submit.php
+++ b/submit.php
@@ -66,7 +66,7 @@ function submit_preview($subject, $abstract, $article, $section) {
$output .= "<TEXTAREA WRAP=\"virtual\" COLS=\"50\" ROWS=\"15\" NAME=\"article\">". check_textarea($article) ."</TEXTAREA><BR>\n";
$output .= "<SMALL><I>". t("Allowed HTML tags") .": ". htmlspecialchars($allowed_html) .".</I></SMALL><P>\n";
- $duplicate = db_result(db_query("SELECT COUNT(id) FROM stories WHERE subject = '$subject'"));
+ $duplicate = db_result(db_query("SELECT COUNT(id) FROM stories WHERE subject = '". check_input($subject) ."'"));
if (empty($subject)) {
$output .= "<FONT COLOR=\"red\">". t("Warning: you did not supply a subject.") ."</FONT><P>\n";