#2397: Better Crontib'd Bi-Directional E-Mail Integration
-------------------------------------------------------+--------------------
 Reporter:  Demitrious S. Kelly <[EMAIL PROTECTED]>  |        Owner:  jonas
     Type:  enhancement                                |       Status:  new  
 Priority:  normal                                     |    Milestone:       
Component:  ticket system                              |      Version:  0.9  
 Severity:  normal                                     |   Resolution:       
 Keywords:  e-mail email gateway smtp ticket           |  
-------------------------------------------------------+--------------------
Comment (by [EMAIL PROTECTED]):

 Nobody should use this script, there is an sql injection problem wrt the
 use of the From value in a simple format.

 You need to be using placeholders in stead, see this page for some
 examples of how track does it:
 
http://www.initd.org/tracker/psycopg/browser/psycopg2/trunk/doc/extensions.rst?rev=729

-- 
Ticket URL: <http://trac.edgewall.org/ticket/2397>
The Trac Project <http://trac.edgewall.com/>
_______________________________________________
Trac-Tickets mailing list
[email protected]
http://lists.edgewall.com/mailman/listinfo/trac-tickets

Reply via email to