aboutsummaryrefslogtreecommitdiffstats
path: root/phpBB/includes/user_loader.php
diff options
context:
space:
mode:
authorAndreas Fischer <bantu@phpbb.com>2013-03-15 01:22:00 +0100
committerAndreas Fischer <bantu@phpbb.com>2013-03-15 01:22:00 +0100
commit1694dc6e2853c294c502e387d2d2463501d2d844 (patch)
tree7b4e0eb5f06011e61564d289b44e970f326b6fc1 /phpBB/includes/user_loader.php
parentb17c0aa098485994355a173299ab54fd91629f8e (diff)
downloadforums-1694dc6e2853c294c502e387d2d2463501d2d844.tar
forums-1694dc6e2853c294c502e387d2d2463501d2d844.tar.gz
forums-1694dc6e2853c294c502e387d2d2463501d2d844.tar.bz2
forums-1694dc6e2853c294c502e387d2d2463501d2d844.tar.xz
forums-1694dc6e2853c294c502e387d2d2463501d2d844.zip
[ticket/11440] Cast values of the $user_ids array to integer before sql_in_set.
PHPBB3-11440
Diffstat (limited to 'phpBB/includes/user_loader.php')
-rw-r--r--phpBB/includes/user_loader.php3
1 files changed, 2 insertions, 1 deletions
diff --git a/phpBB/includes/user_loader.php b/phpBB/includes/user_loader.php
index a834051ab3..37bf9648c1 100644
--- a/phpBB/includes/user_loader.php
+++ b/phpBB/includes/user_loader.php
@@ -70,7 +70,8 @@ class phpbb_user_loader
{
$user_ids[] = ANONYMOUS;
- $user_ids = array_unique($user_ids);
+ // Make user_ids unique and convert to integer.
+ $user_ids = array_map('intval', array_unique($user_ids));
// Do not load users we already have in $this->users
$user_ids = array_diff($user_ids, array_keys($this->users));