Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
bpicolo
9y ago
0 comments
Save
Share
> mitigates any potential SQL injection problems
Not quite, string concat for defining queries is still plenty vulnerable regardless of PDO.
0 comments
1 comments · 1 top-level
top
newest
oldest
dmilicevic
9y ago
it mitigates quite some SQL injection possibilities, but yes, string concat while building queries still remains an issue.
j
/
k
navigate · click thread line to collapse