#2397: Better Crontib'd Bi-Directional E-Mail Integration
-------------------------------------------------------+--------------------
Reporter: Demitrious S. Kelly <[EMAIL PROTECTED]> | Owner: jonas
Type: enhancement | Status: new
Priority: normal | Milestone:
Component: ticket system | Version: 0.9
Severity: normal | Resolution:
Keywords: e-mail email gateway smtp ticket |
-------------------------------------------------------+--------------------
Comment (by [EMAIL PROTECTED]):
Nobody should use this script, there is an sql injection problem wrt the
use of the From value in a simple format.
You need to be using placeholders in stead, see this page for some
examples of how track does it:
http://www.initd.org/tracker/psycopg/browser/psycopg2/trunk/doc/extensions.rst?rev=729
--
Ticket URL: <http://trac.edgewall.org/ticket/2397>
The Trac Project <http://trac.edgewall.com/>
_______________________________________________
Trac-Tickets mailing list
[email protected]
http://lists.edgewall.com/mailman/listinfo/trac-tickets