summaryrefslogtreecommitdiffstats
path: root/system/database
diff options
context:
space:
mode:
authorkenjis <kenji@codeigniter.jp>2011-09-02 01:41:17 +0200
committerkenjis <kenji@codeigniter.jp>2011-09-02 01:41:17 +0200
commit0e857631f5c6f38c5715450ea3f6ff514ac65b2c (patch)
treeed93ec7a185bd77a0dbc533ea47ec5789da30a4f /system/database
parent886d87c616bd422585c6a1190b0e1b72bc661269 (diff)
fixes potential SQL injection vector in Active Record offset()
Diffstat (limited to 'system/database')
-rw-r--r--system/database/DB_active_rec.php2
1 files changed, 1 insertions, 1 deletions
diff --git a/system/database/DB_active_rec.php b/system/database/DB_active_rec.php
index 37d162bc1..89766e304 100644
--- a/system/database/DB_active_rec.php
+++ b/system/database/DB_active_rec.php
@@ -894,7 +894,7 @@ class CI_DB_active_record extends CI_DB_driver {
*/
public function offset($offset)
{
- $this->ar_offset = $offset;
+ $this->ar_offset = (int) $offset;
return $this;
}