Plugin Directory

Changeset 3265800


Ignore:
Timestamp:
04/02/2025 05:04:47 PM (12 months ago)
Author:
rohitashv
Message:

minor bug

Location:
emarksheet
Files:
2 edited

Legend:

Unmodified
Added
Removed
  • emarksheet/tags/5.4.4/menu-pages/emark_add_class.php

    r3265798 r3265800  
    1515{
    1616    $subname = wp_unslash($_POST['name']);
    17     $wpdb->query($wpdb->prepare("insert into `emarksheet_class`(`id`,`class_name`) values('','$subname')"));
     17    $wpdb->query($wpdb->prepare("insert into `emarksheet_class`(`id`,`class_name`) values('',%s)",$subname));
    1818    echo "<div class='alert alert-success'>Class Name Added Successfully</div>";
    1919}
     
    2626    $up_su_n = wp_unslash($_POST['up_su_n']);
    2727    $up_su_id = wp_unslash($_POST['up_id']);
    28     $wpdb->query($wpdb->prepare("update `emarksheet_class` set `class_name`='$up_su_n' where `id`='$up_su_id'"));
     28    $wpdb->query($wpdb->prepare("update `emarksheet_class` set `class_name`=%s where `id`=%s",$up_su_n,$up_su_id));
    2929    echo "<div class='alert alert-success'>Class Name Updated Successfully</div>";
    3030}
     
    4141{
    4242    $idd = esc_html($_GET['id']);
    43     $selectd_row =  $wpdb->get_results($wpdb->prepare("select * from `emarksheet_class` where `id`='$idd'"));
     43    $selectd_row =  $wpdb->get_results($wpdb->prepare("select * from `emarksheet_class` where `id`=%s",$idd));
    4444    $su_n = $selectd_row[0]->class_name;
    4545    ?>
  • emarksheet/trunk/menu-pages/emark_add_class.php

    r3265798 r3265800  
    1515{
    1616    $subname = wp_unslash($_POST['name']);
    17     $wpdb->query($wpdb->prepare("insert into `emarksheet_class`(`id`,`class_name`) values('','$subname')"));
     17    $wpdb->query($wpdb->prepare("insert into `emarksheet_class`(`id`,`class_name`) values('',%s)",$subname));
    1818    echo "<div class='alert alert-success'>Class Name Added Successfully</div>";
    1919}
     
    2626    $up_su_n = wp_unslash($_POST['up_su_n']);
    2727    $up_su_id = wp_unslash($_POST['up_id']);
    28     $wpdb->query($wpdb->prepare("update `emarksheet_class` set `class_name`='$up_su_n' where `id`='$up_su_id'"));
     28    $wpdb->query($wpdb->prepare("update `emarksheet_class` set `class_name`=%s where `id`=%s",$up_su_n,$up_su_id));
    2929    echo "<div class='alert alert-success'>Class Name Updated Successfully</div>";
    3030}
     
    4141{
    4242    $idd = esc_html($_GET['id']);
    43     $selectd_row =  $wpdb->get_results($wpdb->prepare("select * from `emarksheet_class` where `id`='$idd'"));
     43    $selectd_row =  $wpdb->get_results($wpdb->prepare("select * from `emarksheet_class` where `id`=%s",$idd));
    4444    $su_n = $selectd_row[0]->class_name;
    4545    ?>
Note: See TracChangeset for help on using the changeset viewer.