Commit e110756d authored by stan-rnao's avatar stan-rnao

Merge pull request #206 from stan-rnao/sanitize_option_group

Sanitize option group input
parents 8c041f45 c55e6a01
......@@ -944,6 +944,7 @@ function grantprograms_civicrm_searchTasks($objectName, &$tasks) {
}
function grantprograms_getOptionValueLabel($optioGroupID, $value) {
$value = CRM_Core_DAO::escapeString($value);
$query = "SELECT label FROM civicrm_option_value WHERE option_group_id = {$optioGroupID} AND value = '{$value}' ";
return CRM_Core_DAO::singleValueQuery($query);
}
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment