Skip to content

SQL Injection - go-pg ORM string concatenation #977

Answered by aarondl
elfgoh asked this question in Q&A
Discussion options

You must be logged in to vote

It is enough. We don't do string building with those. This seems to be a false positive? Can you look more into what whatever vulnerability scanner you're using is reporting and why it would think this?

Replies: 1 comment 1 reply

Comment options

You must be logged in to vote
1 reply
@elfgoh
Comment options

Answer selected by elfgoh
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants