Fork me on GitHub
Subscribe 2

Ticket #768 (fixed bug)

Even more unescaped IP addresses

  • Created: 2012-11-15 23:46:30
  • Reported by: Franz
  • Assigned to: Franz
  • Milestone: 1.5.2
  • Component: security
  • Priority: normal

Turns out we forgot some...

History

Franz 2012-11-15 23:47:53

Commit 250e47d to fluxbb master

Merge pull request #58 from adaur/master

#768 : escaping one more IP field

Visman 2012-11-23 04:02:03

It is necessary to go all the way wink
All (in quiries)

.get_remote_address().

replace

.$db->escape(get_remote_address()).
Comment edited 2 times (Diff, Diff 2)

Franz 2013-01-02 13:59:00

Commit a972f88 to fluxbb master

#768: Escape IP addresses when querying database.

Franz 2013-01-02 14:02:47

  • Owner set to Franz.

Franz 2013-01-02 14:04:09

Commit bca233e to fluxbb master

#768: Escape IP addresses when displaying them.

Franz 2013-01-02 14:04:47

  • Status changed from open to fixed.

Ok, I did some fairly careful searching. I hope that's all of them now.