Fix: replace addslashes by $db->escape for postgresql compatibility

This commit is contained in:
Regis Houssin
2011-02-14 16:18:23 +00:00
parent 511ff9abbe
commit 6d3269bb69
2 changed files with 7 additions and 7 deletions

View File

@@ -198,8 +198,8 @@ class Skeleton_class // extends CommonObject
// Update request
$sql = "UPDATE ".MAIN_DB_PREFIX."mytable SET";
$sql.= " field1=".(isset($this->field1)?"'".addslashes($this->field1)."'":"null").",";
$sql.= " field2=".(isset($this->field2)?"'".addslashes($this->field2)."'":"null")."";
$sql.= " field1=".(isset($this->field1)?"'".$this->db->escape($this->field1)."'":"null").",";
$sql.= " field2=".(isset($this->field2)?"'".$this->db->escape($this->field2)."'":"null")."";
//...
$sql.= " WHERE rowid=".$this->id;