https://www.redmine.org/https://www.redmine.org/favicon.ico?16793021292013-09-14T15:36:44ZRedmineRedmine - Defect #14902: Potential invalid SQL error with invalid group_idshttps://www.redmine.org/issues/14902?journal_id=517622013-09-14T15:36:44ZJean-Philippe Langjp_lang@yahoo.fr
<ul><li><strong>Assignee</strong> set to <i>Jean-Philippe Lang</i></li></ul><p>Could you try this patch?</p>
<pre>
Index: app/models/issue.rb
===================================================================
--- app/models/issue.rb (revision 12132)
+++ app/models/issue.rb (working copy)
@@ -108,10 +108,10 @@
when 'all'
nil
when 'default'
- user_ids = [user.id] + user.groups.map(&:id)
+ user_ids = [user.id] + user.groups.map(&:id).compact
"(#{table_name}.is_private = #{connection.quoted_false} OR #{table_name}.author_id = #{user.id} OR #{table_name}.assigned_to_id IN (#{user_ids.join(',')}))"
when 'own'
- user_ids = [user.id] + user.groups.map(&:id)
+ user_ids = [user.id] + user.groups.map(&:id).compact
"(#{table_name}.author_id = #{user.id} OR #{table_name}.assigned_to_id IN (#{user_ids.join(',')}))"
else
'1=0'
</pre> Redmine - Defect #14902: Potential invalid SQL error with invalid group_idshttps://www.redmine.org/issues/14902?journal_id=518052013-09-16T15:07:11ZAndreas Hupfau
<ul></ul><p>I'm not the author, but I had the same issue and can confirm the patch is helping!</p> Redmine - Defect #14902: Potential invalid SQL error with invalid group_idshttps://www.redmine.org/issues/14902?journal_id=519062013-09-19T17:59:26ZEtienne Massip
<ul><li><strong>Target version</strong> set to <i>Candidate for next minor release</i></li></ul> Redmine - Defect #14902: Potential invalid SQL error with invalid group_idshttps://www.redmine.org/issues/14902?journal_id=520652013-09-25T17:37:16ZJean-Philippe Langjp_lang@yahoo.fr
<ul><li><strong>Subject</strong> changed from <i>Trackers without Assignees get Internal 500/MySQL error when parents or children</i> to <i>Potential invalid SQL error with invalid group_ids</i></li><li><strong>Target version</strong> changed from <i>Candidate for next minor release</i> to <i>2.3.4</i></li></ul><p>Patch applied in <a class="changeset" title="Prevents invalid SQL with invalid group_ids (#14902)." href="https://www.redmine.org/projects/redmine/repository/svn/revisions/12162">r12162</a>, thanks for the feedback.</p> Redmine - Defect #14902: Potential invalid SQL error with invalid group_idshttps://www.redmine.org/issues/14902?journal_id=524902013-10-13T08:27:10ZJean-Philippe Langjp_lang@yahoo.fr
<ul><li><strong>Status</strong> changed from <i>New</i> to <i>Closed</i></li><li><strong>Resolution</strong> set to <i>Fixed</i></li></ul><p>Merged.</p>