You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
SQL Injection is a critical vulnerability that can lead to data or system compromise. By dynamically generating SQL query strings, user input may be able to influence the logic of the SQL statement. This could lead to an adversary accessing information they should not have access to or in some circumstances, being able to execute OS functionality or code. Read more: https://cwe.mitre.org/data/definitions/89.html
Severity Threshold: π΅ MEDIUM
1 Potential vulnerability sources found within this repo
π΄ CRITICAL
π‘ HIGH
π΅ MEDIUM
βͺ LOW
ID: 01JB0Q1PJ1QGZX8SAEBX3E99H1
Language: Go
Severity: π΄ CRITICAL
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
SQL Injection is a critical vulnerability that can lead to data or system compromise. By dynamically generating SQL query strings, user input may be able to influence the logic of the SQL statement. This could lead to an adversary accessing information they should not have access to or in some circumstances, being able to execute OS functionality or code.
Read more:
https://cwe.mitre.org/data/definitions/89.html
opa_lambda/lambda/policyevaluator/policyevaluator.go
Line 41 in 9a20252
Reply with
/nullify
to interact with me like another developerThe text was updated successfully, but these errors were encountered: