Fixed injection sql in chart_generator

This commit is contained in:
Daniel Maya 2020-01-23 10:40:55 +01:00
parent 2447514c41
commit 9f9cc9beda
1 changed files with 1 additions and 1 deletions

View File

@ -70,7 +70,7 @@ class User
$this->sessions[$data['phpsessionid']] = 1;
$info = \db_get_row_filter(
'tsessions_php',
['id_session' => $data['phpsessionid']]
['id_session' => io_safe_input($data['phpsessionid'])]
);
if ($info !== false) {