From 5a35f508c6037880bbb5cc34a3ac9df85853f2f3 Mon Sep 17 00:00:00 2001 From: Marcus Hill Date: Mon, 2 Jan 2023 14:32:17 +0000 Subject: [PATCH] Remove unrequired trim & strip tags - only needs sql escape --- api/v1/contacts/read.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/api/v1/contacts/read.php b/api/v1/contacts/read.php index c15b1493..19acda88 100644 --- a/api/v1/contacts/read.php +++ b/api/v1/contacts/read.php @@ -11,7 +11,7 @@ if (isset($_GET['contact_id'])) { // Specific contact via email (single) elseif (isset($_GET['contact_email'])) { - $email = trim(strip_tags(mysqli_real_escape_string($mysqli, $_GET['contact_email']))); + $email = mysqli_real_escape_string($mysqli, $_GET['contact_email']); $sql = mysqli_query($mysqli, "SELECT * FROM contacts WHERE contact_email = '$email' AND contact_client_id LIKE '$client_id' AND company_id = '$company_id'"); }