Open thruthesky opened 3 years ago
The value of conds param must be escaped.
Controller must check where http var to not accept value. The where clause must have question mark only without right side value.
where
The value of conds param must be escaped.
Controller must check
where
http var to not accept value. Thewhere
clause must have question mark only without right side value.