1
0
mirror of https://github.com/vichan-devel/vichan.git synced 2024-12-01 18:47:20 +01:00

markup modifiers: there was a plan for adding markup to ban reasons, but assignment was missing; escape markup there too

This commit is contained in:
czaks 2013-07-31 20:33:27 -04:00 committed by Michael Foster
parent 4e84ceb368
commit e2fd06ed10

View File

@ -61,7 +61,8 @@ function ban($mask, $reason, $length, $board) {
$query->bindValue(':mod', $mod['id']);
$query->bindValue(':time', time());
if ($reason !== '') {
markup($reason);
$reason = escape_markup_modifiers($reason);
$reason = markup($reason);
$query->bindValue(':reason', $reason);
} else
$query->bindValue(':reason', null, PDO::PARAM_NULL);