case "updateArticle":
$article_ids = array_filter(explode(",", db_escape_string($_REQUEST["article_ids"])), is_numeric);
$mode = (int) db_escape_string($_REQUEST["mode"]);
+ $data = db_escape_string($_REQUEST["data"]);
$field_raw = (int)db_escape_string($_REQUEST["field"]);
$field = "";
case 2:
$field = "unread";
break;
+ case 3:
+ $field = "note";
};
switch ($mode) {
break;
}
+ if ($field == "note") $set_to = "'$data'";
+
if ($field && $set_to && count($article_ids) > 0) {
$article_ids = join(", ", $article_ids);