|
@@ -15,10 +15,10 @@
|
|
|
$callFunction = $conn->real_escape_string(isset($_POST['f'])?$_POST['f']:"");
|
|
$callFunction = $conn->real_escape_string(isset($_POST['f'])?$_POST['f']:"");
|
|
|
$gameId = $conn->real_escape_string(isset($_POST['gameId'])?$_POST['gameId']:"");
|
|
$gameId = $conn->real_escape_string(isset($_POST['gameId'])?$_POST['gameId']:"");
|
|
|
$userName = $conn->real_escape_string(isset($_POST['userName'])?$_POST['userName']:"");
|
|
$userName = $conn->real_escape_string(isset($_POST['userName'])?$_POST['userName']:"");
|
|
|
- $userId = $conn->query("SELECT id FROM users where username = '$userName'");
|
|
|
|
|
|
|
+ $userId = $conn->query("SELECT id FROM users where username = '$userName'")->fetch_assoc()['id'];
|
|
|
|
|
|
|
|
if ($callFunction === "list"){
|
|
if ($callFunction === "list"){
|
|
|
- $sql = "SELECT game.*, users.username as playerToAct FROM `game` LEFT JOIN users on currentPlayer = users.id WHERE id IN (SELECT gameId FROM gamePlayers WHERE playerId = $userId)"
|
|
|
|
|
|
|
+ $sql = "SELECT game.*, users.username as playerToAct FROM game LEFT JOIN users on currentPlayer = users.id WHERE users.id IN (SELECT gameId FROM gamePlayers WHERE playerId = $userId)";
|
|
|
$result = $conn->query($sql);
|
|
$result = $conn->query($sql);
|
|
|
|
|
|
|
|
if ($result->num_rows > 0) {
|
|
if ($result->num_rows > 0) {
|