Changeset 7017
- Timestamp:
- 05/08/2013 12:34:37 AM (12 years ago)
- Location:
- trunk
- Files:
-
- 2 edited
Legend:
- Unmodified
- Added
- Removed
-
trunk/bp-core/bp-core-classes.php
r7015 r7017 839 839 840 840 if ( !empty( $search_terms ) && bp_is_active( 'xprofile' ) ) { 841 $search_terms = esc_sql( like_escape( trim( $search_terms )) );841 $search_terms = esc_sql( like_escape( $search_terms ) ); 842 842 $sql['where_searchterms'] = "AND spd.value LIKE '%%$search_terms%%'"; 843 843 } … … 956 956 } 957 957 958 $letter = esc_sql( like_escape( trim( $letter )) );958 $letter = esc_sql( like_escape( $letter ) ); 959 959 $status_sql = bp_core_get_status_sql( 'u.' ); 960 960 … … 1054 1054 $pag_sql = $limit && $page ? $wpdb->prepare( " LIMIT %d, %d", intval( ( $page - 1 ) * intval( $limit ) ), intval( $limit ) ) : ''; 1055 1055 1056 $search_terms = esc_sql( like_escape( trim( $search_terms )) );1056 $search_terms = esc_sql( like_escape( $search_terms ) ); 1057 1057 $status_sql = bp_core_get_status_sql( 'u.' ); 1058 1058 -
trunk/bp-groups/bp-groups-classes.php
r7015 r7017 543 543 544 544 if ( !empty( $search_terms ) ) { 545 $search_terms = esc_sql( like_escape( trim( $search_terms )) );545 $search_terms = esc_sql( like_escape( $search_terms ) ); 546 546 $search_sql = " AND ( g.name LIKE '%%{$search_terms}%%' OR g.description LIKE '%%{$search_terms}%%' )"; 547 547 } … … 585 585 586 586 if ( !empty( $search_terms ) ) { 587 $search_terms = esc_sql( like_escape( trim( $search_terms )) );587 $search_terms = esc_sql( like_escape( $search_terms ) ); 588 588 $search_sql = " AND ( g.name LIKE '%%{$search_terms}%%' OR g.description LIKE '%%{$search_terms}%%' )"; 589 589 } … … 668 668 669 669 if ( !empty( $search_terms ) ) { 670 $search_terms = esc_sql( like_escape( trim( $search_terms )) );670 $search_terms = esc_sql( like_escape( $search_terms ) ); 671 671 $search_sql = " AND ( g.name LIKE '%%{$search_terms}%%' OR g.description LIKE '%%{$search_terms}%%' )"; 672 672 } … … 1113 1113 1114 1114 if ( !empty( $filter ) ) { 1115 $filter = esc_sql( like_escape( trim( $filter )) );1115 $filter = esc_sql( like_escape( $filter ) ); 1116 1116 $filter_sql = " AND ( g.name LIKE '%%{$filter}%%' OR g.description LIKE '%%{$filter}%%' )"; 1117 1117 }
Note: See TracChangeset
for help on using the changeset viewer.