From e609c3a4d2dae7b43b8180753e57fa5e0d2f27ac Mon Sep 17 00:00:00 2001 From: Andrew Dolgov Date: Tue, 20 Jan 2009 17:53:12 +0100 Subject: [PATCH] feed browser: fix escaping --- modules/pref-feed-browser.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/modules/pref-feed-browser.php b/modules/pref-feed-browser.php index 576b684a9..aa6ef3114 100644 --- a/modules/pref-feed-browser.php +++ b/modules/pref-feed-browser.php @@ -170,7 +170,7 @@ $feedctr = 0; while ($line = db_fetch_assoc($result)) { - $feed_url = $line["feed_url"]; + $feed_url = db_escape_string($line["feed_url"]); $subscribers = $line["subscribers"]; // mysql returns NULL records first by default