Closed tsnoad closed 14 years ago
can ids used in url be used for sql inject attack?
As long as all ajax calls are run through the standard security / access control checks then this is not a security issue.
Recommend closing this task
Agree, but we should be on the lookout for ways to break in
can ids used in url be used for sql inject attack?