public inbox for [email protected]  
help / color / mirror / Atom feed
From: Francisco Olarte <[email protected]>
To: Tom Lane <[email protected]>
Cc: Glen K <[email protected]>
Cc: [email protected] <[email protected]>
Subject: Re: Feature request: Settings to disable comments and multiple statements in a connection
Date: Thu, 5 Jun 2025 10:54:05 +0200
Message-ID: <CA+bJJbwRyD+PH-hFXkL=jjDSJdraktXv_T=JSTHuKTjb4g9JDA@mail.gmail.com> (raw)
In-Reply-To: <[email protected]>
References: <BN0P223MB0152E29A351757553BB74C19A86CA@BN0P223MB0152.NAMP223.PROD.OUTLOOK.COM>
	<[email protected]>

On Thu, 5 Jun 2025 at 01:06, Tom Lane <[email protected]> wrote:
> ... An injection attack is normally
> trying to break out of a quoted string, not a comment.

I think the comments he refers to are more used to do "bobby tables"
like stuff, as helpers in correct statement forming, not to inject per
se.

( I do not think the feature request is worth doing either, just commenting ).

Francisco Olarte.






view thread (9+ messages)  latest in thread

reply

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Reply to all the recipients using the --to and --cc options:
  reply via email

  To: [email protected]
  Cc: [email protected], [email protected], [email protected], [email protected]
  Subject: Re: Feature request: Settings to disable comments and multiple statements in a connection
  In-Reply-To: <CA+bJJbwRyD+PH-hFXkL=jjDSJdraktXv_T=JSTHuKTjb4g9JDA@mail.gmail.com>

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

This inbox is served by agora; see mirroring instructions
for how to clone and mirror all data and code used for this inbox