[GH-ISSUE #104] Investigate a potential SQL injection #40

Closed
opened 2026-02-27 08:14:54 +03:00 by kerem · 0 comments
Owner

Originally created by @nitnelave on GitHub (Dec 2, 2021).
Original GitHub issue: https://github.com/lldap/lldap/issues/104

Creating a user with a quote inside the name doesn't work. Variable substitution should be delegated to sqlx rather than handled in sea-query, maybe?

Originally created by @nitnelave on GitHub (Dec 2, 2021). Original GitHub issue: https://github.com/lldap/lldap/issues/104 Creating a user with a quote inside the name doesn't work. Variable substitution should be delegated to sqlx rather than handled in sea-query, maybe?
kerem 2026-02-27 08:14:54 +03:00
  • closed this issue
  • added the
    bug
    label
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
starred/lldap-lldap#40
No description provided.