Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

SQL Injection vulnerability #1

Open
celyes opened this issue Nov 12, 2020 · 3 comments
Open

SQL Injection vulnerability #1

celyes opened this issue Nov 12, 2020 · 3 comments

Comments

@celyes
Copy link

celyes commented Nov 12, 2020

Hello, everyone.

I'm opening this issue to inform you that all PHP files containing SQL queries are vulnerable to SQL injection.

Suggested fix: try using prepared statements

I'm tagging @madenemalika-zz since the PHP files are commited by her
@HouariZegai have a quick look

Thank you all

@HouariZegai
Copy link
Member

Salem Ilyes,

You right, I am also saw it, ping @madenemalika.

Thanks for your feedback.

@celyes
Copy link
Author

celyes commented Feb 3, 2021

@madenemalika Any commits?

@celyes
Copy link
Author

celyes commented Feb 3, 2021

UPDATE: XSS and CSRF Vunerabilities could also be found.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants