Open
Description
Referring to code samples like here:
Taking into account the documentation here and the specific below paragraph, the provided code in the examples seem to be dangerous as unsanitized user input is used directly to concatenate a SQL string without using proper cds.ql.
Please verify if this is correct interpretation of the security of the provided samples and whether this should be corrected throughout the samples.
Metadata
Metadata
Assignees
Labels
No labels