Re: Protection from SQL injection
- From: Josh Berkus <josh(at)agliodbs(dot)com>
- To: pgsql-hackers(at)postgresql(dot)org
- Cc: Gregory Stark <stark(at)enterprisedb(dot)com>, "Andrew Sullivan" <ajs(at)commandprompt(dot)com>
- Subject: Re: Protection from SQL injection
- Date: Tue, 29 Apr 2008 18:20:36 -0700
- Message-id: <200804291820(dot)36408(dot)josh(at)agliodbs(dot)com>
Greg,
> Did you guys miss Tom's comment up-thread? Postgres already does this if
> you use PQExecParams().
Keen. Now we just need to get the driver developers to implement it. I
imagine Java does.
--
Josh Berkus
PostgreSQL @ Sun
San Francisco
Home |
Main Index |
Thread Index