diff options
author | Andrew Dolgov <[email protected]> | 2021-02-17 14:56:36 +0300 |
---|---|---|
committer | Andrew Dolgov <[email protected]> | 2021-02-17 14:56:36 +0300 |
commit | 2b2833bb4fa6f958b89a83adea89d9e7c73daee7 (patch) | |
tree | 8e57050458d81dfe6841150c82b8013af5d14eb2 /plugins/note/init.php | |
parent | 4632d6cf558774cfcb17b3b4cf10399c3626096b (diff) |
plugins: load dialogs via xhr instead of http
Diffstat (limited to 'plugins/note/init.php')
-rw-r--r-- | plugins/note/init.php | 6 |
1 files changed, 3 insertions, 3 deletions
diff --git a/plugins/note/init.php b/plugins/note/init.php index 12c56f7ad..65e1f0eef 100644 --- a/plugins/note/init.php +++ b/plugins/note/init.php @@ -27,17 +27,17 @@ class Note extends Plugin { } function edit() { - $param = $_REQUEST['param']; + $id = clean($_REQUEST['id']); $sth = $this->pdo->prepare("SELECT note FROM ttrss_user_entries WHERE ref_id = ? AND owner_uid = ?"); - $sth->execute([$param, $_SESSION['uid']]); + $sth->execute([$id, $_SESSION['uid']]); if ($row = $sth->fetch()) { $note = $row['note']; - print \Controls\hidden_tag("id", "$param"); + print \Controls\hidden_tag("id", $id); print \Controls\hidden_tag("op", "pluginhandler"); print \Controls\hidden_tag("method", "setNote"); print \Controls\hidden_tag("plugin", "note"); |