aboutsummaryrefslogtreecommitdiffstats
path: root/phpBB/includes
diff options
context:
space:
mode:
Diffstat (limited to 'phpBB/includes')
-rw-r--r--phpBB/includes/functions.php5
-rw-r--r--phpBB/includes/functions_display.php4
-rw-r--r--phpBB/includes/functions_posting.php2
3 files changed, 6 insertions, 5 deletions
diff --git a/phpBB/includes/functions.php b/phpBB/includes/functions.php
index de1f7064e8..d293157bd7 100644
--- a/phpBB/includes/functions.php
+++ b/phpBB/includes/functions.php
@@ -35,8 +35,9 @@ function set_config($config_name, $config_value, $is_dynamic = FALSE)
}
else
{
- $db->sql_query('DELETE FROM ' . CONFIG_TABLE . "
- WHERE config_name = '" . $config_name . "'");
+ $sql = 'DELETE FROM ' . CONFIG_TABLE . "
+ WHERE config_name = '$config_name'";
+ $db->sql_query($sql);
$sql = 'INSERT INTO ' . CONFIG_TABLE . " (config_name, config_value)
VALUES ('$config_name', '" . $db->sql_escape($config_value) . "')";
diff --git a/phpBB/includes/functions_display.php b/phpBB/includes/functions_display.php
index d65fe44c19..c9a69b1349 100644
--- a/phpBB/includes/functions_display.php
+++ b/phpBB/includes/functions_display.php
@@ -55,8 +55,8 @@ function display_forums($root_data = '', $display_moderators = TRUE)
$lastread_select = '';
$sql_lastread = '';
- $tracking_forums = (isset($_COOKIE[$config['cookie_name'] . '_f'])) ? unserialize($_COOKIE[$config['cookie_name'] . '_f']) : array();
- $tracking_topics = (isset($_COOKIE[$config['cookie_name'] . '_t'])) ? unserialize($_COOKIE[$config['cookie_name'] . '_t']) : array();
+ $tracking_forums = (isset($_COOKIE[$config['cookie_name'] . '_f'])) ? unserialize(stripslashes($_COOKIE[$config['cookie_name'] . '_f'])) : array();
+ $tracking_topics = (isset($_COOKIE[$config['cookie_name'] . '_t'])) ? unserialize(stripslashes($_COOKIE[$config['cookie_name'] . '_t'])) : array();
}
$sql = "SELECT f.* $lastread_select
diff --git a/phpBB/includes/functions_posting.php b/phpBB/includes/functions_posting.php
index 7ae621ed6e..24284032ea 100644
--- a/phpBB/includes/functions_posting.php
+++ b/phpBB/includes/functions_posting.php
@@ -1173,7 +1173,7 @@ function submit_post($mode, $message, $subject, $username, $topic_type, $bbcode_
// Mark this topic as read and posted to.
$mark_mode = ($mode == 'post' || $mode == 'reply' || $mode == 'quote') ? 'post' : 'topic';
- markread($mark_mode, $post_data['forum_id'], $post_data['topic_id'], $post_data['post_id']);
+ markread($mark_mode, $post_data['forum_id'], $post_data['topic_id'], $post_data['post_time']);
$db->sql_transaction('commit');