Ignore:
Timestamp:
May 4, 2014, 4:00:55 PM (10 years ago)
Author:
mistic100
Message:

fix escaping

File:
1 edited

Legend:

Unmodified
Added
Removed
  • extensions/ContactForm/maintain.inc.php

    r26057 r28343  
    9595      // save config
    9696      $conf['ContactForm'] = serialize($new_conf);
    97       conf_update_param('ContactForm', $conf['ContactForm']);
     97      conf_update_param('ContactForm', pwg_db_real_escape_string($conf['ContactForm']));
    9898    }
    9999
Note: See TracChangeset for help on using the changeset viewer.