浏览代码

[Web] Minor fixes

andryyy 6 年之前
父节点
当前提交
03259d66bb
共有 1 个文件被更改,包括 1 次插入1 次删除
  1. 1 1
      data/web/inc/functions.mailbox.inc.php

+ 1 - 1
data/web/inc/functions.mailbox.inc.php

@@ -3657,7 +3657,7 @@ function mailbox($_action, $_type, $_data = null, $_extra = null) {
             $stmt->execute(array(
             $stmt->execute(array(
               ':username' => $username
               ':username' => $username
             ));
             ));
-            $stmt = $pdo->prepare("DELETE FROM `sogo_acl` WHERE `c_object` LIKE '%/" . $username . "/%' OR `c_uid` = :username");
+            $stmt = $pdo->prepare("DELETE FROM `sogo_acl` WHERE `c_object` LIKE '%/" . str_replace('%', '\%', $username) . "/%' OR `c_uid` = :username");
             $stmt->execute(array(
             $stmt->execute(array(
               ':username' => $username
               ':username' => $username
             ));
             ));