Skip to content
Permalink
Browse files

Security fixes, add int casting

  • Loading branch information...
jmontoyaa committed Jan 18, 2019
1 parent 6968fb5 commit 297f7809b81787bf7ab9357bc846aefc34fef896
Showing with 2 additions and 1 deletion.
  1. +2 −1 main/inc/lib/social.lib.php
@@ -1623,7 +1623,7 @@ public static function sendWallMessageAttachmentFile(
* Gets all messages from someone's wall (within specific limits).
*
* @param int $userId id of wall shown
* @param string $messageStatus status wall message
* @param int $messageStatus status wall message
* @param int|string $parentId id message (Post main)
* @param string $start Date from which we want to show the messages, in UTC time
* @param int $limit Limit for the number of parent messages we want to show
@@ -1651,6 +1651,7 @@ public static function getWallMessages(
$userId = intval($userId);
$start = Database::escape_string($start);
$limit = intval($limit);
$messageStatus = (int) $messageStatus;
$sql = "SELECT
id,

0 comments on commit 297f780

Please sign in to comment.
You can’t perform that action at this time.