diff --git a/lib/upload.php b/lib/upload.php index 03b080e..e5a7bf0 100644 --- a/lib/upload.php +++ b/lib/upload.php @@ -183,11 +183,11 @@ function fileExists(int $fileId, bool $onlyMine = true): bool|string if (!$onlyMine && !isModerator()) { $onlyMine = true; } - $query = 'SELECT ID, Path FROM Files WHERE ID = ?' . ($onlyMine ? ' AND UploadedBy = ?' : ''); - $stmtfileexists = $mysqli->prepare($query); if ($onlyMine) { + $stmtfileexists = $mysqli->prepare('SELECT ID, Path FROM Files WHERE ID = ? AND UploadedBy = ?'); $stmtfileexists->bind_param('ii', $fileId, $_SESSION['id']); } else { + $stmtfileexists = $mysqli->prepare('SELECT ID, Path FROM Files WHERE ID = ?'); $stmtfileexists->bind_param('i', $fileId); } $filePath = "";