mirror of
https://github.com/phpbb/phpbb.git
synced 2025-07-21 09:01:29 +02:00
[ticket/9657] Correctly use " vs ' and variables in queries
PHPBB3-9657
This commit is contained in:
@@ -126,11 +126,11 @@ class phpbb_content_visibility
|
|||||||
else
|
else
|
||||||
{
|
{
|
||||||
// The user is just a normal user
|
// The user is just a normal user
|
||||||
return "$table_alias{$mode}_visibility = " . ITEM_APPROVED . '
|
return $table_alias . $mode . '_visibility = ' . ITEM_APPROVED . '
|
||||||
AND ' . $db->sql_in_set($table_alias . 'forum_id', $forum_ids, false, true);
|
AND ' . $db->sql_in_set($table_alias . 'forum_id', $forum_ids, false, true);
|
||||||
}
|
}
|
||||||
|
|
||||||
$where_sql .= "($table_alias{$mode}_visibility = " . ITEM_APPROVED . '
|
$where_sql .= '(' . $table_alias . $mode . '_visibility = ' . ITEM_APPROVED . '
|
||||||
AND ' . $db->sql_in_set($table_alias . 'forum_id', $forum_ids) . '))';
|
AND ' . $db->sql_in_set($table_alias . 'forum_id', $forum_ids) . '))';
|
||||||
|
|
||||||
return $where_sql;
|
return $where_sql;
|
||||||
@@ -157,12 +157,12 @@ class phpbb_content_visibility
|
|||||||
|
|
||||||
if (sizeof($exclude_forum_ids))
|
if (sizeof($exclude_forum_ids))
|
||||||
{
|
{
|
||||||
$where_sqls[] = '(' . $db->sql_in_set($table_alias . 'forum_id', $exclude_forum_ids, true) . "
|
$where_sqls[] = '(' . $db->sql_in_set($table_alias . 'forum_id', $exclude_forum_ids, true) . '
|
||||||
AND $table_alias{$mode}_visibility = " . ITEM_APPROVED . ')';
|
AND ' . $table_alias . $mode . '_visibility = ' . ITEM_APPROVED . ')';
|
||||||
}
|
}
|
||||||
else
|
else
|
||||||
{
|
{
|
||||||
$where_sqls[] = "$table_alias{$mode}_visibility = " . ITEM_APPROVED;
|
$where_sqls[] = $table_alias . $mode . '_visibility = ' . ITEM_APPROVED;
|
||||||
}
|
}
|
||||||
|
|
||||||
if (sizeof($approve_forums))
|
if (sizeof($approve_forums))
|
||||||
|
Reference in New Issue
Block a user