We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
2 parents e558e9c + 09b2105 commit 07042aaCopy full SHA for 07042aa
sources/ucp/buynx.php
@@ -45,8 +45,8 @@
45
}
46
47
else {
48
- $selChar = isset($_POST['selChar']) ? $_POST['selChar'] : '';
49
- $selPack = isset($_POST['selPack']) ? $_POST['selPack'] : '';
+ $selChar = isset($_POST['selChar']) ? $mysqli->real_escape_string( $_POST['selChar'] ) : '';
+ $selPack = isset($_POST['selPack']) ? $mysqli->real_escape_string( $_POST['selPack'] ) : '';
50
$hasMeso = $mysqli->query("SELECT * FROM `characters` WHERE `id` = '".$selChar."'") or die();
51
$getMeso = $hasMeso->fetch_assoc();
52
$fetchNX = $mysqli->query("SELECT * FROM `".$prefix."buynx` WHERE `meso` = '".$selPack."'") or die();
0 commit comments