Skip to:
Content

bbPress.org

Changeset 4709


Ignore:
Timestamp:
01/24/2013 04:51:49 PM (11 years ago)
Author:
johnjamesjacoby
Message:

Prepare $username in bbp_user_maybe_convert_pass(). Props Maty. (2.2 branch)

File:
1 edited

Legend:

Unmodified
Added
Removed
  • branches/2.2/includes/users/functions.php

    r4346 r4709  
    11381138
    11391139    // Bail if no user password to convert
    1140     $row = $wpdb->get_row( "SELECT * FROM {$wpdb->users} INNER JOIN {$wpdb->usermeta} ON user_id = ID WHERE meta_key = '_bbp_class' AND user_login = '{$username}' LIMIT 1" );
     1140    $row = $wpdb->get_row( $wpdb->prepare( "SELECT * FROM {$wpdb->users} INNER JOIN {$wpdb->usermeta} ON user_id = ID WHERE meta_key = '_bbp_class' AND user_login = '%s' LIMIT 1", $username ) );
    11411141    if ( empty( $row ) || is_wp_error( $row ) )
    11421142        return;
Note: See TracChangeset for help on using the changeset viewer.