Edgewall Software
Modify

Opened 17 years ago

Closed 16 years ago

#5635 closed defect (duplicate)

Extreme vulnerability to badly-formed SQL queries

Reported by: Dave Abrahams <dave@…> Owned by: Matthew Good
Priority: normal Milestone:
Component: report system Version: devel
Severity: normal Keywords:
Cc: Branch:
Release Notes:
API Changes:
Internal Changes:

Description

For me, a badly-written SQL ticket query tends to yield:

"ProgrammingError: current transaction is aborted, commands ignored until end of transaction block"

which is not very helpful. Also the buttons that allow me to edit/copy/delete the query disappear, making it inordinately difficult to correct the problem!

Attachments (0)

Change History (3)

comment:1 by Emmanuel Blot, 17 years ago

Milestone: 0.110.11.1

comment:2 by Emmanuel Blot, 17 years ago

Component: ticket systemreport system
Owner: changed from Jonas Borgström to Matthew Good

comment:3 by Christian Boos, 16 years ago

Milestone: 0.11.1
Resolution: duplicate
Status: newclosed

See #5806.

Modify Ticket

Change Properties
Set your email in Preferences
Action
as closed The owner will remain Matthew Good.
The resolution will be deleted. Next status will be 'reopened'.
to The owner will be changed from Matthew Good to the specified user.

Add Comment


E-mail address and name can be saved in the Preferences .
 
Note: See TracTickets for help on using tickets.