From faef9c8dd3bbd9403881982f57bee4342d5c39e3 Mon Sep 17 00:00:00 2001 From: Florian Pritz Date: Thu, 12 Jul 2012 01:34:51 +0200 Subject: Explicitly select fields in db queries Signed-off-by: Florian Pritz --- application/controllers/user.php | 2 +- application/models/muser.php | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) (limited to 'application') diff --git a/application/controllers/user.php b/application/controllers/user.php index 29d9eaeeb..d9a549ae6 100644 --- a/application/controllers/user.php +++ b/application/controllers/user.php @@ -101,7 +101,7 @@ class User extends CI_Controller { $userid = $this->muser->get_userid(); $query = $this->db->query(" - SELECT * + SELECT `key` FROM invitations WHERE user = ? ", array($userid))->result_array(); diff --git a/application/models/muser.php b/application/models/muser.php index d123c8701..8ec4de4c5 100644 --- a/application/models/muser.php +++ b/application/models/muser.php @@ -17,7 +17,7 @@ class Muser extends CI_Model { function login($username, $password) { $query = $this->db->query(' - SELECT * + SELECT username, id, password FROM `users` WHERE `username` = ? ', array($username))->row_array(); -- cgit v1.2.3-24-g4f1b