Function check_sql removed

This function was used before we started using paramaterized queries. So a better way has been in use for many years time to deprecate and remove the check_sql function.
This commit is contained in:
FusionPBX
2025-11-08 14:35:24 -07:00
committed by GitHub
parent 083a4ad97f
commit 203ce4d2a3
2 changed files with 1 additions and 19 deletions

View File

@@ -666,7 +666,7 @@ class database {
if ($this->type == "mssql") {
$sql = "SELECT * FROM sys.Tables order by name asc";
}
$prep_statement = $this->db->prepare(check_sql($sql));
$prep_statement = $this->db->prepare($sql);
$prep_statement->execute();
$tmp = $prep_statement->fetchAll(PDO::FETCH_NAMED);
if ($this->type == "pgsql" || $this->type == "sqlite" || $this->type == "mssql") {
@@ -2295,7 +2295,6 @@ class database {
//run the query and return the results
try {
//$this->db->query(check_sql($sql));
$prep_statement = $this->db->prepare($sql);
$prep_statement->execute($params);
unset($prep_statement);
@@ -2506,7 +2505,6 @@ class database {
try {
$prep_statement = $this->db->prepare($sql);
$prep_statement->execute($params);
//$this->db->query(check_sql($sql));
$message["message"] = "OK";
$message["code"] = "200";
$message["uuid"] = $parent_key_value;

View File

@@ -127,22 +127,6 @@ if (!function_exists('check_str')) {
}
}
if (!function_exists('check_sql')) {
/**
* Alias of trim
*
* @param string $string
*
* @return void
* @see trim()
* @deprecated 5.0
*/
function check_sql($string) {
trigger_error('check_sql should not be used. Use parameterized queries instead.', E_USER_WARNING);
return trim($string); //remove white space
}
}
if (!function_exists('check_cidr')) {
/**
* Checks if the $ip_address is within the range of the given $cidr