From 76ed1bdad89e405fef8b217e5833295f4bd8307d Mon Sep 17 00:00:00 2001 From: markjaquith Date: Mon, 9 Jul 2007 17:55:32 +0000 Subject: [PATCH] Undo pre-doublequoting in prepare(). Props JeremyVisser. see #4553 git-svn-id: http://svn.automattic.com/wordpress/trunk@5791 1a063a9b-81f0-0310-95a4-ce76da25c4cd --- wp-includes/wp-db.php | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/wp-includes/wp-db.php b/wp-includes/wp-db.php index 6b729a005..5317dbde5 100644 --- a/wp-includes/wp-db.php +++ b/wp-includes/wp-db.php @@ -132,7 +132,8 @@ class wpdb { return; $args = func_get_args(); $query = array_shift($args); - $query = str_replace("'%s'", '%s', $query); // in case someone mistakenly already quoted it + $query = str_replace("'%s'", '%s', $query); // in case someone mistakenly already singlequoted it + $query = str_replace('"%s"', '%s', $query); // doublequote unquoting $query = str_replace('%s', "'%s'", $query); // quote the strings array_walk($args, array(&$this, 'escape_by_ref')); return @vsprintf($query, $args);