Skip to content

Prevent SQL injection #2

Description

@yopox

In database/index.js, various functions build SQL requests with user input.
This could lead to classic SQL injection attacks.

This issue is not a huge problem for now as the project is meant to be used by trusted people in a fablab with few coding skills.

If you want to setup this project, it is advised to rewrite index.js files anyway !

Metadata

Metadata

Assignees

No one assigned

    Labels

    help wantedExtra attention is neededvulnerabilitySomething can be attacked

    Type

    No type

    Fields

    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions