Topic: missing escaping in installer
Hey there,
just installed punBB 1.2.11 yesterday and used a SQL password containing a '
and so I got the line
$db_password = 'my cool'password';
which of course resulted in a blank page. took my quite some time to figure it out.
So the installer should check for any ' in the given fields and escape them before outputting the config.php sample - as you can easily overlook sth like this.
Cheers.