Welcome Guest, Not a member yet? Register   Sign In
About is_ajax_request
#2

Yes, it can be bypassed (easily spoofed). You don't want to use it for security. That said, you wouldn't normally show a link to that URI, so it's not likely anyone will go there. You should do some validation before making the MySQL query, because you should be rejecting NULL before allowing a query.
Reply


Messages In This Thread
About is_ajax_request - by theedo - 07-17-2017, 01:09 PM
RE: About is_ajax_request - by skunkbad - 07-17-2017, 02:23 PM
RE: About is_ajax_request - by reactionstudio - 07-17-2017, 09:09 PM
RE: About is_ajax_request - by theedo - 07-18-2017, 02:10 AM
RE: About is_ajax_request - by natanfelles - 07-18-2017, 06:37 AM
RE: About is_ajax_request - by theedo - 07-18-2017, 01:44 PM



Theme © iAndrew 2016 - Forum software by © MyBB