DeNAã®å¥¥ããã¨ãã¯ãã·ãããJSON SQL Injectionã«ã¤ãã¦å ¬è¡¨ããã¦ãã¾ãã The JSON SQL Injection Vulnerability ä¸æ£ãªJSONãã¼ã¿ã«ããSQL Injectionã¸ã®å¯¾çã«ã¤ã㦠(Json.pm+SQLã¯ã¨ãªãã«ãã¼) ä¸è¨ã®è¨äºã¯ã主ã«Perlã¹ã¯ãªãããJSONãã¼ã¿ãåãåãã·ããªãªã§èª¬æããã¦ãã¾ãããã¡ããããã®çµã¿åããã«éå®ããã¯ãªãã§ã¯ãªãããã§ãããã§ã¯PHPã§ã¯ã©ãã ããã¨æã調ã¹ã¦ã¿ã¾ããã JSON SQL Injectionã¨ã¯ 以ä¸ãã¯ãã·ããã®ãä¸æ£ãªJSONãã¼ã¿ã«ããâ¦ãã«ãããã£ã¦JSON SQL Injectionã«ã¤ãã¦èª¬æãã¾ãã Perlåãã®SQLã¸ã§ãã¬ã¼ã¿ã®ä¸ã¤ã§ããSQL::Makerã«ããã¦ã以ä¸ã®ã¹ã¯ãªãããæ³å®ãã¾ãã my ($sql, @bind) = $builde
{{#tags}}- {{label}}
{{/tags}}