From 98267d90d535ba88ee7ff474d36e368e8dfc1380 Mon Sep 17 00:00:00 2001 From: BJRambo Date: Sun, 30 May 2021 19:14:24 +0900 Subject: [PATCH] =?UTF-8?q?Fix=20#1719=20=EC=B9=9C=EA=B5=AC=20=EB=93=B1?= =?UTF-8?q?=EB=A1=9D=EC=9D=B4=20=EB=90=98=EC=A7=80=20=EC=95=8A=EB=8D=98=20?= =?UTF-8?q?=EB=AC=B8=EC=A0=9C=20=EA=B3=A0=EC=B9=A8?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- .../communication/communication.controller.php | 17 +++++++++++++---- 1 file changed, 13 insertions(+), 4 deletions(-) diff --git a/modules/communication/communication.controller.php b/modules/communication/communication.controller.php index 9ffca2c4f..51bdac1cf 100644 --- a/modules/communication/communication.controller.php +++ b/modules/communication/communication.controller.php @@ -690,12 +690,21 @@ class communicationController extends communication throw new Rhymix\Framework\Exceptions\MustLogin; } - $logged_info = Context::get('logged_info'); + $friend_group_srl = trim(Context::get('friend_group_srl')); // Variables $args = new stdClass(); - $args->friend_group_srl = trim(Context::get('friend_group_srl')); - $args->member_srl = $logged_info->member_srl; + + if($friend_group_srl) + { + if(!is_numeric($friend_group_srl)) + { + throw new Rhymix\Framework\Exceptions\InvalidRequest; + } + $args->friend_group_srl = $friend_group_srl; + } + + $args->member_srl = $this->user->member_srl; $args->title = escape(Context::get('title')); if(!$args->title) @@ -708,8 +717,8 @@ class communicationController extends communication { $output = executeQuery('communication.renameFriendGroup', $args); $msg_code = 'success_updated'; - // add if not exists } + // add if not exists else { $output = executeQuery('communication.addFriendGroup', $args);