just seeing a function called safeForSql makes me uncomfortable tbh
Conversation
Notices
-
Embed this notice
johann150@genau.qwertqwefsday.eu's status on Thursday, 06-Mar-2025 03:44:28 JST Johann150
- Puniko ? likes this.
-
Embed this notice
Puniko ? (puniko@mk.absturztau.be)'s status on Thursday, 06-Mar-2025 03:44:49 JST Puniko ?
@Johann150@genau.qwertqwefsday.eu :neocat_lul: oh you don't wanna see my creations
:blobcathug: likes this. -
Embed this notice
snow :bot: (collector's edition ✨) (snow@cofe.rocks)'s status on Thursday, 06-Mar-2025 04:25:03 JST snow :bot: (collector's edition ✨)
@Johann150 always mildly surprising to see ppl still doing this
youd think we've left the php times of ppl gluing query strings together behind and collectively moved on to prepared statements
and yet, somehow, in 2025, there are still sql injections out there :neobot_lul::blobcathug: likes this. -
Embed this notice
johann150@genau.qwertqwefsday.eu's status on Thursday, 06-Mar-2025 04:25:04 JST Johann150
@snow@cofe.rocks misskey had (has?) this function and foundkey had it until i exorcised it from the codebase two years ago 😇
-
Embed this notice
snow :bot: (collector's edition ✨) (snow@cofe.rocks)'s status on Thursday, 06-Mar-2025 04:25:05 JST snow :bot: (collector's edition ✨)
@Johann150 its fiiiine dont worry about it -
Embed this notice
johann150@genau.qwertqwefsday.eu's status on Thursday, 06-Mar-2025 04:35:28 JST Johann150
@puniko@mk.absturztau.be its a bit funny but also sad to come across that function again now in the iceshrimp security issue when i removed it from foundkey 2 years ago
Puniko ? likes this.