From 341fcce75ec8d16538eec6ebcdfbdd00711c6638 Mon Sep 17 00:00:00 2001 From: friendica Date: Tue, 6 Dec 2011 19:51:19 -0800 Subject: preg_quote search strings --- mod/network.php | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'mod/network.php') diff --git a/mod/network.php b/mod/network.php index 2a3db597e..3df8a2105 100644 --- a/mod/network.php +++ b/mod/network.php @@ -364,8 +364,8 @@ function network_content(&$a, $update = 0) { if(x($_GET,'search')) { $search = escape_tags($_GET['search']); $sql_extra .= sprintf(" AND ( `item`.`body` REGEXP '%s' OR `item`.`tag` REGEXP '%s' ) ", - dbesc($search), - dbesc('\\]' . $search . '\\[') + dbesc(preg_quote($search)), + dbesc('\\]' . preg_quote($search) . '\\[') ); } -- cgit v1.2.3