From 755c8e0f193153a5d2ebd43a6b5c6338bc87eedd Mon Sep 17 00:00:00 2001 From: Justus Dieckmann <justusdieckmann@wwu.de> Date: Thu, 26 Sep 2019 16:47:13 +0200 Subject: [PATCH] Delays: Fix faulty LIKE query --- classes/table/delayed_courses_table.php | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/classes/table/delayed_courses_table.php b/classes/table/delayed_courses_table.php index 3277028..49e4a5a 100644 --- a/classes/table/delayed_courses_table.php +++ b/classes/table/delayed_courses_table.php @@ -127,8 +127,8 @@ class delayed_courses_table extends \table_sql { if ($filterdata && $filterdata->coursename) { global $DB; - $where .= 'AND c.fullname LIKE \'%' . $DB->sql_like_escape($filterdata->coursename) . '%\' '; - $params['cname'] = $filterdata->coursename; + $where .= 'AND c.fullname LIKE :cname'; + $params['cname'] = '%' . $DB->sql_like_escape($filterdata->coursename) . '%'; } $this->set_sql($fields, $from, $where, $params); -- GitLab