From 8796dfe73bb4e4da6fb157480bdd6c3ca8693b08 Mon Sep 17 00:00:00 2001 From: Eliot Whalan Date: Tue, 28 Jun 2016 08:07:55 +1000 Subject: [PATCH] Make id and delkey required for sql query --- main.go | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/main.go b/main.go index e56ba96..e03ed9a 100644 --- a/main.go +++ b/main.go @@ -162,10 +162,10 @@ func delHandler(w http.ResponseWriter, r *http.Request) { db, err := sql.Open("mysql", DATABASE) check(err) - stmt, err := db.Prepare("delete from pastebin where delkey=?") + stmt, err := db.Prepare("delete from pastebin where delkey=? and id=?") check(err) - res, err := stmt.Exec(html.EscapeString(delkey)) + res, err := stmt.Exec(html.EscapeString(delkey), html.EscapeString(paste)) check(err) _, err = res.RowsAffected()