[Qual] Mysqli: escape with the proper method

This commit is contained in:
Raphaël Doursenaud 2015-12-17 21:53:09 +01:00
parent 87762f14b5
commit aeb3935e31

View File

@ -378,7 +378,7 @@ class DoliDBMysqli extends DoliDB
*/
function escape($stringtoencode)
{
return addslashes($stringtoencode);
return $this->db->real_escape_string($stringtoencode);
}
/**