Welcome Guest, Not a member yet? Register   Sign In
Input requested on Security Strategy for CI4-based app
#2

Don't believe the protectIdentifiers() method. It does not protect in many cases.
It is not a security feature. It just protects in known cases.

So don't pass user input to it without validation with allow list.
Reply


Messages In This Thread
RE: Input requested on Security Strategy for CI4-based app - by kenjis - 04-08-2024, 01:59 AM



Theme © iAndrew 2016 - Forum software by © MyBB