Bruno17 / MIGX

MIGX for revo 2.2 and above
83 stars 78 forks source link

SQL-injection #328

Closed AgelxNash closed 5 years ago

AgelxNash commented 5 years ago

https://modx.pro/security/16336

Bruno17 commented 5 years ago

not allways primary keys are integers and getObject allready sanitizes the criteria https://github.com/modxcms/revolution/blob/2.x/core/xpdo/xpdo.class.php#L842

feel free to reopen, if you still feel, this is necessary