> Hi all,
> 
> As suggested, I've converted JDBCDescriptorsStore to using prepared
> statements so as to have the neccesary escaping done for us. I haven't
> tested it yet, though.

Great !

> I intend to finish off the conversion and test on friday, then commit.
> If anyone wants to speak against this, please do so and I'll hold off.

I'm definitely +1 for this.

Remy

Reply via email to