svn commit: r395 - trunk/mapbender/http/include/dyn_php.php

uli at osgeo.org uli at osgeo.org
Wed Jun 7 11:34:51 EDT 2006


Author: uli
Date: 2006-06-07 15:34:50+0000
New Revision: 395

Modified:
   trunk/mapbender/http/include/dyn_php.php

Log:
prepared statements included


Modified: trunk/mapbender/http/include/dyn_php.php
Url: https://mapbender.osgeo.org/source/browse/mapbender/trunk/mapbender/http/include/dyn_php.php?view=diff&rev=395&p1=trunk/mapbender/http/include/dyn_php.php&p2=trunk/mapbender/http/include/dyn_php.php&r1=394&r2=395
==============================================================================
--- trunk/mapbender/http/include/dyn_php.php	(original)
+++ trunk/mapbender/http/include/dyn_php.php	2006-06-07 15:34:50+0000
@@ -1,8 +1,10 @@
 <?php
 if(isset($gui_id))
 {
-	$sql = "SELECT * FROM gui_element_vars WHERE fkey_gui_id = '".$gui_id."' and var_type='php_var'";
-   	$res = db_query($sql);
+	$sql = "SELECT * FROM gui_element_vars WHERE fkey_gui_id = $1 and var_type='php_var'";
+	$v = array($gui_id);
+	$t = array('s');
+   	$res = db_prep_query($sql,$v,$t);
 
 	echo "\n";
 	while($row = db_fetch_array($res))




More information about the Mapbender_commits mailing list