Index: trunk/phase3/includes/db/DatabaseOracle.php |
— | — | @@ -1348,7 +1348,7 @@ |
1349 | 1349 | // Ordinary variables |
1350 | 1350 | foreach ( $varnames as $var ) { |
1351 | 1351 | if ( isset( $GLOBALS[$var] ) ) { |
1352 | | - $val = addslashes( $GLOBALS[$var] ); // FIXME: safety check? |
| 1352 | + $val = $this->addQuotes( $GLOBALS[$var] ); // FIXME: safety check? |
1353 | 1353 | $ins = str_replace( '{$' . $var . '}', $val, $ins ); |
1354 | 1354 | $ins = str_replace( '/*$' . $var . '*/`', '`' . $val, $ins ); |
1355 | 1355 | $ins = str_replace( '/*$' . $var . '*/', $val, $ins ); |
Index: trunk/phase3/includes/db/Database.php |
— | — | @@ -2478,7 +2478,7 @@ |
2479 | 2479 | // Ordinary variables |
2480 | 2480 | foreach ( $varnames as $var ) { |
2481 | 2481 | if ( isset( $GLOBALS[$var] ) ) { |
2482 | | - $val = addslashes( $GLOBALS[$var] ); // FIXME: safety check? |
| 2482 | + $val = $this->addQuotes( $GLOBALS[$var] ); // FIXME: safety check? |
2483 | 2483 | $ins = str_replace( '{$' . $var . '}', $val, $ins ); |
2484 | 2484 | $ins = str_replace( '/*$' . $var . '*/`', '`' . $val, $ins ); |
2485 | 2485 | $ins = str_replace( '/*$' . $var . '*/', $val, $ins ); |