diff options
Diffstat (limited to 'modules')
-rw-r--r-- | modules/user.module | 2 | ||||
-rw-r--r-- | modules/user/user.module | 2 |
2 files changed, 2 insertions, 2 deletions
diff --git a/modules/user.module b/modules/user.module index 6248cf16a..48189a39d 100644 --- a/modules/user.module +++ b/modules/user.module @@ -351,7 +351,7 @@ function user_perm() { function user_search($keys) { - $result = db_query_range("SELECT * FROM {users} WHERE name LIKE '%$keys%'", 0, 20); + $result = db_query_range("SELECT * FROM {users} WHERE name LIKE '%". check_query($keys) ."%'", 0, 20); while ($account = db_fetch_object($result)) { $find[$i++] = array("title" => $account->name, "link" => (strstr(request_uri(), "admin") ? url("admin/user/edit/$account->uid") : url("user/view/$account->uid")), "user" => $account->name); } diff --git a/modules/user/user.module b/modules/user/user.module index 6248cf16a..48189a39d 100644 --- a/modules/user/user.module +++ b/modules/user/user.module @@ -351,7 +351,7 @@ function user_perm() { function user_search($keys) { - $result = db_query_range("SELECT * FROM {users} WHERE name LIKE '%$keys%'", 0, 20); + $result = db_query_range("SELECT * FROM {users} WHERE name LIKE '%". check_query($keys) ."%'", 0, 20); while ($account = db_fetch_object($result)) { $find[$i++] = array("title" => $account->name, "link" => (strstr(request_uri(), "admin") ? url("admin/user/edit/$account->uid") : url("user/view/$account->uid")), "user" => $account->name); } |