diff --git a/var/www/findFriend.php b/var/www/findFriend.php index 702754b..a4e26f9 100644 --- a/var/www/findFriend.php +++ b/var/www/findFriend.php @@ -20,17 +20,17 @@ $sql_select = "SELECT count(username)"; $sql_from = "FROM contacts"; $sql_where = "WHERE username = input"; - $sql_statement = $sql_select." ".$sql_from." ".$sql_where.; - if(($db_connection->query($sql_statement) as $row) == 0) - //username doesn't exist + $sql_statement = $sql_select." ".$sql_from." ".$sql_where.""; + if(($db_connection->query($sql_statement)) == 0) + echo "username doesn't exist"; $sql_select = "SELECT count(username)"; $sql_from = "FROM friendList"; - $sql_where = "WHERE username = input and friend = ".$_SESSION["loggedInUser"].; - $sql_statement = $sql_select." ".$sql_from." ".$sql_where.; - if(($db_connection->query($sql_statement) as $row) == 0) + $sql_where = "WHERE username = input and friend = ".$_SESSION["loggedInUser"].""; + $sql_statement = $sql_select." ".$sql_from." ".$sql_where.""; + if(($db_connection->query($sql_statement)) == 0) { - $sql_statement = "UPDATE friendList SET confirm = true WHERE username = input and friend = ".$_SESSION["loggedInUser"].; + $sql_statement = "UPDATE friendList SET confirm = true WHERE username = input and friend = ".$_SESSION["loggedInUser"].""; $db_connection->query($sql_statement); $sql_statement = "INSERT INTO friendList VALUES (".$_SESSION["loggedInUser"].", input, true)"; $db_connection->query($sql_statement); diff --git a/var/www/pendingFriend.php b/var/www/pendingFriend.php index a720e28..0ac21c4 100644 --- a/var/www/pendingFriend.php +++ b/var/www/pendingFriend.php @@ -1,52 +1,41 @@ - - -
- -