diff --git a/website/details.php b/website/details.php index c9e86312..6b75e73b 100755 --- a/website/details.php +++ b/website/details.php @@ -37,7 +37,7 @@ if ($sOsmType && $iOsmId > 0) { ); // osm_type and osm_id are not unique enough if ($sClass) { - $sSQL .= " AND class='".$sClass."'"; + $sSQL .= " AND class='".pg_escape_string($sClass)."'"; } $sSQL .= ' ORDER BY class ASC'; $sPlaceId = chksql($oDB->getOne($sSQL));