17
17
18
18
api_protect_admin_script ();
19
19
20
- /* Global constants and variables */
21
-
22
20
$ form_sent = 0 ;
23
21
$ first_letter_user = '' ;
24
22
$ first_letter_course = '' ;
30
28
31
29
/* Header */
32
30
$ tool_name = get_lang ('AddUsersToACourse ' );
33
- $ interbreadcrumb [] = [" url " => 'index.php ' , " name " => get_lang ('PlatformAdmin ' )];
31
+ $ interbreadcrumb [] = [' url ' => 'index.php ' , ' name ' => get_lang ('PlatformAdmin ' )];
34
32
35
33
$ htmlHeadXtra [] = '<script>
36
34
function validate_filter() {
@@ -56,7 +54,7 @@ function validate_filter() {
56
54
$ new_field_list = [];
57
55
if (is_array ($ extra_field_list )) {
58
56
foreach ($ extra_field_list as $ extra_field ) {
59
- //if is enabled to filter and is a "<select>" field type
57
+ // if is enabled to filter and is a "<select>" field type
60
58
if ($ extra_field [8 ] == 1 && $ extra_field [2 ] == ExtraField::FIELD_TYPE_SELECT ) {
61
59
$ new_field_list [] = [
62
60
'name ' => $ extra_field [3 ],
@@ -83,8 +81,8 @@ function validate_filter() {
83
81
$ form_sent = $ _POST ['form_sent ' ];
84
82
$ users = isset ($ _POST ['UserList ' ]) && is_array ($ _POST ['UserList ' ]) ? $ _POST ['UserList ' ] : [];
85
83
$ courses = isset ($ _POST ['CourseList ' ]) && is_array ($ _POST ['CourseList ' ]) ? $ _POST ['CourseList ' ] : [];
86
- $ first_letter_user = $ _POST ['firstLetterUser ' ];
87
- $ first_letter_course = $ _POST ['firstLetterCourse ' ];
84
+ $ first_letter_user = Database:: escape_string ( $ _POST ['firstLetterUser ' ]) ;
85
+ $ first_letter_course = Database:: escape_string ( $ _POST ['firstLetterCourse ' ]) ;
88
86
89
87
foreach ($ users as $ key => $ value ) {
90
88
$ users [$ key ] = intval ($ value );
@@ -306,7 +304,7 @@ function validate_filter() {
306
304
<b><?php echo get_lang ('CourseList ' ); ?> :</b>
307
305
<br/><br/>
308
306
<?php echo get_lang ('FirstLetterCourse ' ); ?> :
309
- <select name="firstLetterCourse"
307
+ <select name="firstLetterCourse"
310
308
onchange="javascript:document.formulaire.form_sent.value='2'; document.formulaire.submit();"
311
309
aria-label="<?php echo get_lang ('FirstLetterCourse ' ); ?> ">
312
310
<option value="">--</option>
0 commit comments