Skip to content

Fix sql injection vulnerability with Rails find_by_* calls#265

Open
kdoba wants to merge 1 commit intoprofessor:masterfrom
kdoba:defect-Cohesion-01
Open

Fix sql injection vulnerability with Rails find_by_* calls#265
kdoba wants to merge 1 commit intoprofessor:masterfrom
kdoba:defect-Cohesion-01

Conversation

@kdoba
Copy link

@kdoba kdoba commented May 4, 2014

The fix is to convert the params into string before calling find_by_* functions

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant