Fixed injection sql in chart_generator

This commit is contained in:
Daniel Maya 2020-01-23 10:40:55 +01:00
parent 2447514c41
commit 9f9cc9beda

View File

@ -70,7 +70,7 @@ class User
$this->sessions[$data['phpsessionid']] = 1; $this->sessions[$data['phpsessionid']] = 1;
$info = \db_get_row_filter( $info = \db_get_row_filter(
'tsessions_php', 'tsessions_php',
['id_session' => $data['phpsessionid']] ['id_session' => io_safe_input($data['phpsessionid'])]
); );
if ($info !== false) { if ($info !== false) {