From 536c81ab4756c02f3331add084576c01bb2b7737 Mon Sep 17 00:00:00 2001 From: jhartworks Date: Thu, 16 Apr 2026 14:02:13 +0200 Subject: [PATCH] fix: replace base64 encoding with SHA-256 hashing for projectId and clientId in SQL queries --- CounterServer/module.php | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/CounterServer/module.php b/CounterServer/module.php index 52907d7..00e4c94 100644 --- a/CounterServer/module.php +++ b/CounterServer/module.php @@ -73,7 +73,7 @@ class CounterServer extends IPSModule ( " . $this->esc($projectId) . "', '" . $this->esc($counterId) . "', - '" . base64_encode($projectId.$clientId . '_' . $counterId). "', + '" . hash('sha256', $projectId.$clientId . '_' . $counterId) . "', '" . $this->esc($clientId) . "', '" . $this->esc($clientName) . "', @@ -95,7 +95,7 @@ class CounterServer extends IPSModule // ---------- GET meter_id ---------- $sqlGet = " SELECT id FROM meter_devices - WHERE meter_uuid = '" . base64_encode($projectId.$clientId . '_' . $counterId). "' + WHERE meter_uuid = '" . hash('sha256', $projectId.$clientId . '_' . $counterId) . "' LIMIT 1 ";