sql injection

  • Author
    Posts
  • #109435

    recycled_software
    Participant

    Hi

    I’m running an automated pentest on a clone of our development site and the scan has so far found a couple of SQL injection vulnerabilities for the parameter wmc-currency

    If the SQL in your plugin uses prepared statements then we can rest assured these are false positives. Please can you confirm your SQL uses prepared statements?

You must be logged in to see replies to this topic. Click here to login or register