go-sqlcmd
go-sqlcmd copied to clipboard
Refactor the queries executed wth user input
Queries that have user input should be executed with parametrized queries and should possibly use sp_executesql