From 8fb79a92e967f49c1640c5e97ae7b683c81267a2 Mon Sep 17 00:00:00 2001 From: Ted Trask Date: Thu, 7 Feb 2013 15:29:45 +0000 Subject: Use luasql function to escape values, since this takes database settings into account --- kamailio-model.lua | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'kamailio-model.lua') diff --git a/kamailio-model.lua b/kamailio-model.lua index 944627c..9d8d495 100644 --- a/kamailio-model.lua +++ b/kamailio-model.lua @@ -31,7 +31,7 @@ end -- Escape special characters in sql statements local escape = function(sql) sql = sql or "" - return string.gsub(sql, "'", "''") + return con:escape(sql) end local databaseconnect = function() -- cgit v1.2.3