From 2d6dca47146d33be703cacc85cb76b28cfca8aff Mon Sep 17 00:00:00 2001
From: Thomas Bruederli <thomas@roundcube.net>
Date: Wed, 01 May 2013 07:27:04 -0400
Subject: [PATCH] Escape user input values when used in eval()
---
SQL/sqlite.initial.sql | 2 +-
1 files changed, 1 insertions(+), 1 deletions(-)
diff --git a/SQL/sqlite.initial.sql b/SQL/sqlite.initial.sql
index a9c7f50..83874ce 100644
--- a/SQL/sqlite.initial.sql
+++ b/SQL/sqlite.initial.sql
@@ -209,4 +209,4 @@
value text NOT NULL
);
-INSERT INTO system (name, value) VALUES ('roundcube-version', '2013011700.sql');
+INSERT INTO system (name, value) VALUES ('roundcube-version', '2013011700');
--
Gitblit v1.9.1