Skip to content

Commit 08cb942

Browse files
authored
Fix: Escape chars for name comparsion in sql query (#305)
1 parent 1f649e4 commit 08cb942

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

cstrike/addons/amxmodx/scripting/CA_Storage_GameCMS.sma

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -514,7 +514,7 @@ GameCMS_GetAdminID(const id) {
514514
new name_safe[MAX_NAME_LENGTH * 2]
515515
SQL_QuoteString(Empty_Handle, name_safe, charsmax(name_safe), name)
516516

517-
formatex(g_query, charsmax(g_query), "SELECT id FROM admins WHERE (name = '%s' or name = '%s') LIMIT 1;",
517+
formatex(g_query, charsmax(g_query), "SELECT id FROM admins WHERE (name = '%s' or name = \"%s\") LIMIT 1;",
518518
authID, name_safe
519519
)
520520

0 commit comments

Comments
 (0)