From 0108b70a8b710d2ad035d9ddb7db47ab7cf73533 Mon Sep 17 00:00:00 2001 From: Colin Kuskie Date: Thu, 14 Oct 2004 05:15:33 +0000 Subject: [PATCH] SQL quoting for page GUIDs --- lib/WebGUI/Wobject/MessageBoard.pm | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/lib/WebGUI/Wobject/MessageBoard.pm b/lib/WebGUI/Wobject/MessageBoard.pm index 3d13c673e..d521a78c6 100644 --- a/lib/WebGUI/Wobject/MessageBoard.pm +++ b/lib/WebGUI/Wobject/MessageBoard.pm @@ -199,7 +199,7 @@ sub www_editForum { my ($sth, $data, %MBoards); tie %MBoards, "Tie::IxHash"; $MBoards{0} = WebGUI::International::get(92, $_[0]->get("namespace")); - $sth = WebGUI::SQL->read("SELECT wobject.wobjectId, wobject.title as wobjectTitle, page.title as pageTitle FROM wobject LEFT JOIN page using(pageId) WHERE wobject.namespace='MessageBoard' and page.pageId NOT IN (2,3,4,5) AND wobject.wobjectId!=".quote($_[0]->get("wobjectId"))." order by page.title ASC"); + $sth = WebGUI::SQL->read("SELECT wobject.wobjectId, wobject.title as wobjectTitle, page.title as pageTitle FROM wobject LEFT JOIN page using(pageId) WHERE wobject.namespace='MessageBoard' and page.pageId NOT IN ('2','3','4','5') AND wobject.wobjectId!=".quote($_[0]->get("wobjectId"))." order by page.title ASC"); while ($data = $sth->hashRef){ $MBoards{$data->{wobjectId}} = $data->{pageTitle}." - ".$data->{wobjectTitle}; }