Kazuho's Weblog: The JSON SQL Injection Vulnerability ã«ã¤ãã¦ãå è¨äºãã¯ã£ã¡ããã£ã¡ãã«è¦ç´ãã㨠SQL::Maker ã«ã¦ã¼ã¶ããåãã¨ã£ããã³ã¼ãæ¸ã¿ JSON ããã®ã¾ã¾çªã£è¾¼ã㨠SQL ã¤ã³ã¸ã§ã¯ã·ã§ã³ã«ãªãå ´åããã SQL::Maker å´ã§ãããã£ããã¨ãèµ·ãããªãããã« strict ãªãã·ã§ã³ãã¤ãããããã§ããã°ãã£ã¡ä½¿ã å¥ã« SQL::Maker ã«éããªãããæ°ãã¤ãã ã¨ãã話ã£ã½ããæ¬æ¥ã§ããã°ã¦ã¼ã¶å ¥åãã¿ã¤ããã§ãã¯ããã¹ãã ãã©ãã¯ã¨ãªãã«ãã¬ãã«ã§ããèå¼±æ§ã«ãªããªãããã«ããã¡ãã£ã¨èæ ®ãã¦ãããããã¨ãã趣æ¨ããªâ¦ strict ã¢ã¼ãã¯éäºæãªã®ã§ãæ¢åã®ã³ã¼ããåããªããªãå¯è½æ§ãããããã§ãã Teng ã§ã®å¯¾å¿ Teng ã使ã£ã¦ããã¨ããã©ã«ã㧠SQL::Maker ãã¯ã¨ãªã
{{#tags}}- {{label}}
{{/tags}}