SQL INJECTION javascript-static.js

Re: SQL INJECTION javascript-static.js

by Tim Hunt -
Number of replies: 0
Picture of Core developers Picture of Documentation writers Picture of Particularly helpful Moodlers Picture of Peer reviewers Picture of Plugin developers

When you clicked the button to make the above forum post did you see the bit saying

DO NOT REPORT NEW VULNERABILITIES HERE!

New security issues should be reported in the Moodle Tracker with an appropriate security level.

However, I don't understand what issue you think you have found. What makes "IBM Security AppScan" think there is any SQL injection there? (If there really is an issue, please do not explain here. Explain it in a security issue in the tracker.)