Browse Source

Add files via upload

wibyweb 2 years ago
parent
commit
ce6685e33e
1 changed files with 4 additions and 4 deletions
  1. 4 4
      html/feedback/index.php

+ 4 - 4
html/feedback/index.php

@@ -47,14 +47,14 @@
 		  exit(); 
 		  exit(); 
 		}
 		}
  
  
-		$feedback = str_replace("\'", "\'\'", $_POST['feedback']); //single quotes must be handled correctly
-		$feedback = str_replace("\"", "\"\"", $feedback);//double quotes must be handled correctly
-	    	//$feedback = mysqli_real_escape_string($link, $_POST['feedback']);//doesn't read back properly
+		//$feedback = str_replace("\'", "\'\'", $_POST['feedback']); //single quotes must be handled correctly
+		//$feedback = str_replace("\"", "\"\"", $feedback);//double quotes must be handled correctly
+	    $feedback = mysqli_real_escape_string($link, $_POST['feedback']);
 
 
 		$feedback = substr($feedback,0,8000); //don't allow user to post a longer string than 8k (also limited in form)
 		$feedback = substr($feedback,0,8000); //don't allow user to post a longer string than 8k (also limited in form)
 
 
 
 
-		$sql = 'INSERT INTO feedback (message) VALUES ("'.$feedback.'")';
+		$sql = "INSERT INTO feedback (message) VALUES ('".$feedback."')";
 
 
 
 
 		if (!mysqli_query($link, $sql))   
 		if (!mysqli_query($link, $sql))