sql var not quoted

This commit is contained in:
Faustin 2022-10-29 17:56:03 +02:00
parent bc4b9c4b18
commit d5ad0090a0

View File

@ -335,7 +335,7 @@ if ($object->ismultientitymanaged == 1) {
}
if ($managedfor == 'member') {
if ($memberid > 0) {
$sql .= " AND t.fk_member = ".$memberid;
$sql .= " AND t.fk_member = ".((int) $memberid);
} else {
$sql .= " AND fk_member > 0";
}