TheOnlyWayUp / TheEtherBot

I learnt a decent amount of SQL from this, one of my first projects using it actually, was a great learning experience.
3 stars 0 forks source link

(BAN-B608) Audit required: Risk of possible SQL injection vector through string-based query construction #1

Open TheOnlyWayUp opened 2 years ago

TheOnlyWayUp commented 2 years ago

Description

Constructing SQL query using user provided data is insecure. It makes application vulnerable to [SQL injection](SQL injection) attacks.

Occurrences

There are 6 occurrences of this issue in the repository.

See all occurrences on DeepSource → deepsource.io/gh/TheOnlyWayUp/TheEtherBot/issue/BAN-B608/occurrences/

TheOnlyWayUp commented 2 years ago

Will be checked at a later time, need to gather more info on this rn.