Skip to content
Snippets Groups Projects
Commit 8f276af5 authored by Julian Rother's avatar Julian Rother
Browse files

Escaped "key" (reserved keyword in mysql)

parent 38f4a48c
No related branches found
No related tags found
No related merge requests found
...@@ -93,7 +93,7 @@ def gentoken(): ...@@ -93,7 +93,7 @@ def gentoken():
@app.route('/internal/streaming/rekey/<int:id>') @app.route('/internal/streaming/rekey/<int:id>')
@mod_required @mod_required
def streamrekey(id): def streamrekey(id):
modify('UPDATE live_sources SET key = ? WHERE id = ? AND NOT deleted', gentoken(), id) modify('UPDATE live_sources SET `key` = ? WHERE id = ? AND NOT deleted', gentoken(), id)
source = query('SELECT * FROM live_sources WHERE NOT deleted AND id = ?', id)[0] source = query('SELECT * FROM live_sources WHERE NOT deleted AND id = ?', id)[0]
flash('Der Streamkey von <strong>'+source['name']+'</strong> wurde neu generiert: <span><input readonly type="text" style="width: 15em" value="'+source['key']+'"></span>') flash('Der Streamkey von <strong>'+source['name']+'</strong> wurde neu generiert: <span><input readonly type="text" style="width: 15em" value="'+source['key']+'"></span>')
return redirect(url_for('streaming')) return redirect(url_for('streaming'))
...@@ -122,7 +122,7 @@ def streamauth(server): ...@@ -122,7 +122,7 @@ def streamauth(server):
if not internal: if not internal:
return 'Forbidden', 403 return 'Forbidden', 403
if request.values['call'] == 'publish': if request.values['call'] == 'publish':
sources = query('SELECT * FROM live_sources WHERE NOT deleted AND key = ?', request.values['name']) sources = query('SELECT * FROM live_sources WHERE NOT deleted AND `key` = ?', request.values['name'])
if not sources: if not sources:
return 'Not found', 404 return 'Not found', 404
modify('UPDATE live_sources SET server = ?, clientid = ?, last_active = ?, preview_key = ? WHERE id = ?', server, request.values['clientid'], datetime.now(), gentoken(), sources[0]['id']) modify('UPDATE live_sources SET server = ?, clientid = ?, last_active = ?, preview_key = ? WHERE id = ?', server, request.values['clientid'], datetime.now(), gentoken(), sources[0]['id'])
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment