X-Git-Url: https://delta.frontaccounting.com/gitweb/?a=blobdiff_plain;f=manufacturing%2Fincludes%2Fdb%2Fwork_order_requirements_db.inc;h=b919561be42bc3b42b10ef2512adf63b5547fac3;hb=b0c4c9777f9574e9c2805fddc2a12576d75d94ce;hp=71f9e50a1854664ede79edb45aadae50af7a3a46;hpb=a5242af68e65661edb7175412444dce536a7f311;p=fa-stable.git diff --git a/manufacturing/includes/db/work_order_requirements_db.inc b/manufacturing/includes/db/work_order_requirements_db.inc index 71f9e50a..b919561b 100644 --- a/manufacturing/includes/db/work_order_requirements_db.inc +++ b/manufacturing/includes/db/work_order_requirements_db.inc @@ -15,9 +15,10 @@ function get_wo_requirements($woid) ".TB_PREF."stock_master.mb_flag, ".TB_PREF."locations.location_name, ".TB_PREF."workcentres.name AS WorkCentreDescription FROM - (".TB_PREF."wo_requirements, ".TB_PREF."locations, ".TB_PREF."workcentres) INNER JOIN ".TB_PREF."stock_master ON + (".TB_PREF."wo_requirements, ".TB_PREF."locations, " + .TB_PREF."workcentres) INNER JOIN ".TB_PREF."stock_master ON ".TB_PREF."wo_requirements.stock_id = ".TB_PREF."stock_master.stock_id - WHERE workorder_id=$woid + WHERE workorder_id=".db_escape($woid)." AND ".TB_PREF."locations.loc_code = ".TB_PREF."wo_requirements.loc_code AND ".TB_PREF."workcentres.id=workcentre"; @@ -35,7 +36,7 @@ function create_wo_requirements($woid, $stock_id) { $sql = "INSERT INTO ".TB_PREF."wo_requirements (workorder_id, stock_id, workcentre, units_req, loc_code) - VALUES ($woid, '" . + VALUES (".db_escape($woid).", '" . $myrow["component"] . "', '" . $myrow["workcentre_added"] . "', '" . $myrow["quantity"] . "', '" . @@ -49,17 +50,17 @@ function create_wo_requirements($woid, $stock_id) function delete_wo_requirements($woid) { - $sql="DELETE FROM ".TB_PREF."wo_requirements WHERE workorder_id=$woid"; + $sql="DELETE FROM ".TB_PREF."wo_requirements WHERE workorder_id=".db_escape($woid); db_query($sql,"The work order requirements could not be deleted"); } //-------------------------------------------------------------------------------------- -function update_wo_requirement_issued($woReqID, $quantity) +function update_wo_requirement_issued($woid, $stock_id, $quantity) { - $sql = "UPDATE ".TB_PREF."wo_requirements SET units_issued = units_issued + $quantity - WHERE id = '$woReqID'"; + $sql = "UPDATE ".TB_PREF."wo_requirements SET units_issued = units_issued + ".db_escape($quantity)." + WHERE workorder_id = ".db_escape($woid)." AND stock_id = ".db_escape($stock_id); db_query($sql, "The work requirements issued quantity couldn't be updated"); } @@ -68,11 +69,11 @@ function update_wo_requirement_issued($woReqID, $quantity) function void_wo_requirements($woid) { - $sql = "UPDATE ".TB_PREF."wo_requirements SET units_issued = 0 WHERE workorder_id = $woid"; - + $sql = "UPDATE ".TB_PREF."wo_requirements SET units_issued = 0 WHERE workorder_id = " + .db_escape($woid); + db_query($sql, "The work requirements issued quantity couldn't be voided"); } //-------------------------------------------------------------------------------------- -?> \ No newline at end of file