search should be ok, but a little extra security won't hurt
This commit is contained in:
		| @@ -127,7 +127,7 @@ function search_content(&$a) { | |||||||
| 		FROM `item` LEFT JOIN `contact` ON `contact`.`id` = `item`.`contact-id` | 		FROM `item` LEFT JOIN `contact` ON `contact`.`id` = `item`.`contact-id` | ||||||
| 		LEFT JOIN `user` ON `user`.`uid` = `item`.`uid` | 		LEFT JOIN `user` ON `user`.`uid` = `item`.`uid` | ||||||
| 		WHERE `item`.`visible` = 1 AND `item`.`deleted` = 0 and `item`.`moderated` = 0 | 		WHERE `item`.`visible` = 1 AND `item`.`deleted` = 0 and `item`.`moderated` = 0 | ||||||
| 		AND (( `wall` = 1 AND `item`.`allow_cid` = ''  AND `item`.`allow_gid` = '' AND `item`.`deny_cid`  = '' AND `item`.`deny_gid`  = '' AND `user`.`hidewall` = 0 )  | 		AND (( `wall` = 1 AND `item`.`allow_cid` = ''  AND `item`.`allow_gid` = '' AND `item`.`deny_cid`  = '' AND `item`.`deny_gid`  = '' AND `item`.`private` = 0 AND `user`.`hidewall` = 0 )  | ||||||
| 			OR `item`.`uid` = %d ) | 			OR `item`.`uid` = %d ) | ||||||
| 		AND `contact`.`blocked` = 0 AND `contact`.`pending` = 0 | 		AND `contact`.`blocked` = 0 AND `contact`.`pending` = 0 | ||||||
| 		$search_alg | 		$search_alg | ||||||
|   | |||||||
		Reference in New Issue
	
	Block a user