From d31127c1378e0882f8470a5dec32a576cb9b24ea Mon Sep 17 00:00:00 2001 From: johnnyq Date: Wed, 20 Sep 2023 14:58:05 -0400 Subject: [PATCH] set current code to an intval since its a number only --- login.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/login.php b/login.php index d9c6fe96..26628eeb 100644 --- a/login.php +++ b/login.php @@ -93,7 +93,7 @@ if (isset($_POST['login'])) { $current_code = 0; // Default value if (isset($_POST['current_code'])) { - $current_code = sanitizeInput($_POST['current_code']); + $current_code = intval($_POST['current_code']); } $row = mysqli_fetch_assoc(mysqli_query($mysqli, "SELECT * FROM users LEFT JOIN user_settings on users.user_id = user_settings.user_id WHERE user_email = '$email' AND user_archived_at IS NULL AND user_status = 1"));