sql-builder
sql-builder copied to clipboard
injection ?
does this count as injection ?
var s_value_entered_by_user = '1 OR 1=1';
var sql = builder
.table("a_o_user")
.where("n_id", "=", s_value_entered_by_user)
// .where("name", "like", "%n%")
.update({
s_name: "overwritten!"
})
.build();