www/rec_toproduct.php

changeset 305
bb55e065888a
parent 304
c0ca21cdd291
child 432
99dcd8488b62
equal deleted inserted replaced
304:c0ca21cdd291 305:bb55e065888a
8 } 8 }
9 if (! mysqli_set_charset($link, "utf8" )) { 9 if (! mysqli_set_charset($link, "utf8" )) {
10 echo "error"; 10 echo "error";
11 return 1; 11 return 1;
12 } 12 }
13
14 $rescapers = array("'");
15 $rreplacements = array("\\'");
13 16
14 date_default_timezone_set('Europe/Amsterdam'); 17 date_default_timezone_set('Europe/Amsterdam');
15 if (isset($_GET["record"])) 18 if (isset($_GET["record"]))
16 $record = $_GET["record"]; 19 $record = $_GET["record"];
17 else 20 else
131 $sql .= "', w2_ph='" . $row['w2_ph']; 134 $sql .= "', w2_ph='" . $row['w2_ph'];
132 $sql .= "', w2_cost='" . $row['w2_cost']; 135 $sql .= "', w2_cost='" . $row['w2_cost'];
133 $sql .= "', wa_acid_name='" . $row['wa_acid_name']; 136 $sql .= "', wa_acid_name='" . $row['wa_acid_name'];
134 $sql .= "', wa_acid_perc='" . $row['wa_acid_perc']; 137 $sql .= "', wa_acid_perc='" . $row['wa_acid_perc'];
135 $sql .= "', wa_base_name='" . $row['wa_base_name']; 138 $sql .= "', wa_base_name='" . $row['wa_base_name'];
136 $sql .= "', json_fermentables='" . $row['json_fermentables']; 139 $sql .= "', json_fermentables='" . str_replace($rescapers,$rreplacements,$row['json_fermentables']);
137 $sql .= "', json_hops='" . $row['json_hops']; 140 $sql .= "', json_hops='" . str_replace($rescapers,$rreplacements,$row['json_hops']);
138 $sql .= "', json_miscs='" . $row['json_miscs']; 141 $sql .= "', json_miscs='" . str_replace($rescapers,$rreplacements,$row['json_miscs']);
139 $sql .= "', json_yeasts='" . $row['json_yeasts']; 142 $sql .= "', json_yeasts='" . str_replace($rescapers,$rreplacements,$row['json_yeasts']);
140 $sql .= "', json_mashs='" . $row['json_mashs']; 143 $sql .= "', json_mashs='" . str_replace($rescapers,$rreplacements,$row['json_mashs']);
141 $sql .= "';"; 144 $sql .= "';";
142 syslog(LOG_NOTICE, $sql); 145 syslog(LOG_NOTICE, $sql);
143 146
144 $result = mysqli_query($link, $sql); 147 $result = mysqli_query($link, $sql);
145 if (! $result) { 148 if (! $result) {

mercurial