diff --git a/webapp/controller/ShopController.class.php b/webapp/controller/ShopController.class.php index e7a22d0b..67485c68 100644 --- a/webapp/controller/ShopController.class.php +++ b/webapp/controller/ShopController.class.php @@ -836,6 +836,11 @@ class ShopController extends BaseAuthedController $token_type = getReqVal('token_type', ''); $goods_num = getReqVal('goods_num', 0); + if ($goods_num <= 1) { + $this->_rspErr(1, "goods_num parameter error, goods_num: {$goods_num}"); + return; + } + $row = mt\ShopGoods::get($id); $goods_id = $row['goods_id'];