aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorbbaetz%cs.mcgill.ca <>2001-11-12 13:39:14 +0000
committerbbaetz%cs.mcgill.ca <>2001-11-12 13:39:14 +0000
commitc0336202f666c87269eca94bc675db2f6c506b26 (patch)
tree099da4cc29ef5a7e896c1117eee321d99196a5e9
parenta7fd9f01b94922158fb0eb2695f8dcd077ad3bea (diff)
downloadbugs-c0336202f666c87269eca94bc675db2f6c506b26.tar
bugs-c0336202f666c87269eca94bc675db2f6c506b26.tar.gz
bugs-c0336202f666c87269eca94bc675db2f6c506b26.tar.bz2
bugs-c0336202f666c87269eca94bc675db2f6c506b26.tar.xz
bugs-c0336202f666c87269eca94bc675db2f6c506b26.zip
Bug 109690: Check $bug before using it.
r=justdave,gerv
-rwxr-xr-xlong_list.cgi1
1 files changed, 1 insertions, 0 deletions
diff --git a/long_list.cgi b/long_list.cgi
index 0cde1e93a..63120e5eb 100755
--- a/long_list.cgi
+++ b/long_list.cgi
@@ -73,6 +73,7 @@ where assign.userid = bugs.assigned_to and report.userid = bugs.reporter and";
$::FORM{'buglist'} = "" unless exists $::FORM{'buglist'};
foreach my $bug (split(/:/, $::FORM{'buglist'})) {
+ if (!detaint_natural($bug)) || next;
SendSQL(SelectVisible("$generic_query bugs.bug_id = $bug",
$::userid, $::usergroupset));