diff --git a/src/upload/system/library/retailcrm/lib/repository/DataRepository.php b/src/upload/system/library/retailcrm/lib/repository/DataRepository.php index 74abcb7..62393b7 100644 --- a/src/upload/system/library/retailcrm/lib/repository/DataRepository.php +++ b/src/upload/system/library/retailcrm/lib/repository/DataRepository.php @@ -124,6 +124,7 @@ class DataRepository extends \retailcrm\Base { * @return array */ public function getZoneByName($name) { + $name = $this->db->escape($name); $query = $this->db->query("SELECT * FROM `" . DB_PREFIX . "zone` WHERE name = '" . $name . "'"); return $query->row;