On Mar 7, 2011, at 05:03, cake-learner wrote:

> $sql = "SELECT * FROM accounts WHERE username = '" . $emailAddress .
> "' LIMIT 1";

SQL injection vulnerability.


-- 
Our newest site for the community: CakePHP Video Tutorials 
http://tv.cakephp.org 
Check out the new CakePHP Questions site http://ask.cakephp.org and help others 
with their CakePHP related questions.


To unsubscribe from this group, send email to
[email protected] For more options, visit this group at 
http://groups.google.com/group/cake-php

Reply via email to