From: skodak Date: Fri, 2 Jan 2009 10:43:12 +0000 (+0000) Subject: MDL-16613 sesskey cleanup X-Git-Url: http://git.mjollnir.org/gw?a=commitdiff_plain;h=34a2faed92a3438316b2f6f00a5b4a08e85b0513;p=moodle.git MDL-16613 sesskey cleanup --- diff --git a/admin/block.php b/admin/block.php index ccc58915db..da61afcf70 100644 --- a/admin/block.php +++ b/admin/block.php @@ -23,7 +23,7 @@ // so we can strip them from the submitted data BEFORE handling it. $hiddendata = array( 'block' => $blockid, - 'sesskey' => $USER->sesskey + 'sesskey' => sesskey() ); /// If data submitted, then process and store. diff --git a/admin/blocks.php b/admin/blocks.php index 10e070142c..cfe59e933b 100644 --- a/admin/blocks.php +++ b/admin/blocks.php @@ -181,7 +181,7 @@ $count = $DB->count_records('block_instance', array('blockid'=>$blockid, 'pagetype'=>'course-view')); if ($count>0) { - $blocklist = "wwwroot}/course/search.php?blocklist=$blockid&sesskey={$USER->sesskey}\" "; + $blocklist = "wwwroot}/course/search.php?blocklist=$blockid&sesskey=".sesskey()."\" "; $blocklist .= "title=\"$strshowblockcourse\" >$totalcount"; } else { diff --git a/admin/enrol_config.php b/admin/enrol_config.php index 76b83013fa..1f7ae12222 100644 --- a/admin/enrol_config.php +++ b/admin/enrol_config.php @@ -22,7 +22,7 @@ print_error('confirmsesskeybad', 'error'); } if ($enrolment->process_config($frm)) { - redirect("enrol.php?sesskey=$USER->sesskey", get_string("changessaved"), 1); + redirect("enrol.php?sesskey=".sesskey(), get_string("changessaved"), 1); } } else { $frm = $CFG; diff --git a/admin/modules.php b/admin/modules.php index ba2b5addcc..e8d5099b2d 100644 --- a/admin/modules.php +++ b/admin/modules.php @@ -78,7 +78,7 @@ if (!$confirm) { notice_yesno(get_string("moduledeleteconfirm", "", $strmodulename), - "modules.php?delete=$delete&confirm=1&sesskey=$USER->sesskey", + "modules.php?delete=$delete&confirm=1&sesskey=".sesskey(), "modules.php"); admin_externalpage_print_footer(); exit; @@ -217,7 +217,7 @@ $count = $DB->count_records_select($module->name, "course<>0"); if ($count>0) { $countlink = "wwwroot}/course/search.php?modulelist=$module->name" . - "&sesskey={$USER->sesskey}\" title=\"$strshowmodulecourse\">$count"; + "&sesskey=".sesskey()."\" title=\"$strshowmodulecourse\">$count"; } else { $countlink = "$count"; diff --git a/admin/user.php b/admin/user.php index b991866f79..10325bd446 100644 --- a/admin/user.php +++ b/admin/user.php @@ -261,7 +261,7 @@ $deletebutton = get_string($accessctrl, 'mnet'); if (has_capability('moodle/user:delete', $sitecontext)) { // TODO: this should be under a separate capability - $deletebutton .= " (id}&accessctrl=$changeaccessto&sesskey={$USER->sesskey}\">" + $deletebutton .= " (id}&accessctrl=$changeaccessto&sesskey=".sesskey()."\">" . get_string($changeaccessto, 'mnet') . " access)"; } // mnet info in edit column