forked from wallabag/wallabag
Replace raw query with named parameter
Fix possible issue with special chars on #3139 Signed-off-by: Kevin Decherf <kevin@kdecherf.com>
This commit is contained in:
@ -42,12 +42,13 @@ class Version20170719231144 extends AbstractMigration implements ContainerAwareI
|
||||
$label = $duplicates['LOWER(label)'];
|
||||
|
||||
// Retrieve all duplicate tags for a given tag
|
||||
$tags = $this->connection->query('
|
||||
$tags = $this->connection->createQuery('
|
||||
SELECT id
|
||||
FROM ' . $this->getTable('tag') . "
|
||||
WHERE LOWER(label) = '" . $label . "'
|
||||
WHERE LOWER(label) = :label
|
||||
ORDER BY id ASC"
|
||||
);
|
||||
$tags->setParameter('label', $label);
|
||||
$tags->execute();
|
||||
|
||||
$first = true;
|
||||
|
||||
Reference in New Issue
Block a user