[TYPO3-mvc] SQL-Injection orderBy

Helmut Hummel helmut at typo3.org
Thu Jun 24 21:41:33 CEST 2010


Hi Christian,

On 24.06.10 11:09, Christian Baer wrote:
> 
> maybe I just found a possibility for SQL-Injection in
> Tx_Extbase_Persistence_Storage_Typo3DbBackend, could someone check this
> please?

Please report such findings (only) to the Security Team[1] next time.
Thanks a lot.

Regards Helmut

[1]http://typo3.org/teams/security/contact-us/


More information about the TYPO3-project-typo3v4mvc mailing list