Complete security audit fixes
This commit is contained in:
@@ -34,10 +34,12 @@ class mailer{
|
||||
return $input["smtp"];
|
||||
}
|
||||
|
||||
$sql = "SELECT * FROM smtp_setting WHERE company_id = '{$revise["company_id"]}'";
|
||||
$sql = "SELECT * FROM smtp_setting WHERE company_id = :company_id ";
|
||||
|
||||
$sth = $this->pdo2->prepare("$sql");
|
||||
$sth->execute();
|
||||
$sth->execute([
|
||||
":company_id" => $revise["company_id"]
|
||||
]);
|
||||
|
||||
$res = $sth->fetch(PDO::FETCH_ASSOC);
|
||||
|
||||
|
||||
Reference in New Issue
Block a user