Welcome to OStack Knowledge Sharing Community for programmer and developer-Open, Learning and Share
Welcome To Ask or Share your Answers For Others

Categories

0 votes
663 views
in Technique[技术] by (71.8m points)

pymongo - find elements values are flows through the code without properly sanitized or validated. This may enable an second order SQL injection attack

tags = mycoll.find({"category": "movie"}).distinct("tags")

I have used above code in django and feel it's there is no issue with But checkmarx throwing error

Help?

question from:https://stackoverflow.com/questions/65839704/find-elements-values-are-flows-through-the-code-without-properly-sanitized-or-va

与恶龙缠斗过久,自身亦成为恶龙;凝视深渊过久,深渊将回以凝视…
Welcome To Ask or Share your Answers For Others

1 Answer

0 votes
by (71.8m points)
Waitting for answers

与恶龙缠斗过久,自身亦成为恶龙;凝视深渊过久,深渊将回以凝视…
Welcome to OStack Knowledge Sharing Community for programmer and developer-Open, Learning and Share
Click Here to Ask a Question

...