From 431e494ae43257bea251a59ed6b2a4bb20eb7fd4 Mon Sep 17 00:00:00 2001 From: Meik Sievertsen Date: Thu, 6 Apr 2006 17:15:45 +0000 Subject: To all people having their bug status set to fixed: SF pserver CVS access is currently down, therefore the snapshots are still out of date. - fix a bunch of bugs - is no longer allowed in template (.html) files - changed layout of private message screens (folders are menu items) - removed unread mode for private messages - added new feature to template engine - "jump out of loop" or "loop another loop within my loop" :D (will be documented within the coding guidelines) - added autologin field to sessions - check session length checks - added add_log statement to sessions to track session valid to invalid changes if ip/browser change depending on config settings (only debug) - added multibyte support for various variables (exception at the moment is usernames which needs some discussion) - hopefully not broke something. :/ git-svn-id: file:///svn/phpbb/trunk@5765 89ea8834-ac86-4346-8a33-228a782c2dd0 --- phpBB/includes/mcp/mcp_warn.php | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'phpBB/includes/mcp/mcp_warn.php') diff --git a/phpBB/includes/mcp/mcp_warn.php b/phpBB/includes/mcp/mcp_warn.php index 10491b3528..6b6e809930 100755 --- a/phpBB/includes/mcp/mcp_warn.php +++ b/phpBB/includes/mcp/mcp_warn.php @@ -188,7 +188,7 @@ function mcp_warn_post_view($id, $mode, $action) $post_id = request_var('p', 0); $notify = (isset($_REQUEST['notify_user'])) ? true : false; - $warning = request_var('warning', ''); + $warning = request_var('warning', '', true); $sql = 'SELECT u.*, p.* FROM ' . POSTS_TABLE . ' p, ' . USERS_TABLE . " u WHERE post_id = $post_id @@ -302,7 +302,7 @@ function mcp_warn_user_view($id, $mode, $action) $user_id = request_var('u', 0); $username = request_var('username', ''); $notify = (isset($_REQUEST['notify_user'])) ? true : false; - $warning = request_var('warning', ''); + $warning = request_var('warning', '', true); $sql_where = ($user_id) ? "user_id = $user_id" : "username = '" . $db->sql_escape($username) . "'"; -- cgit v1.2.1