Do you want to remind the leader of the vulnerabilities in the code of other colleagues?

A java engineer who has worked in a large company for 10 years provided me with an interface to send sql statements to him for execution. I cautiously asked him whether he had made a mechanism to prevent malicious code injection, and the answer was no, so I warned him not to be taken seriously, how should I report it to the leader?

Nov.10,2021

ask him on your chat tool (keep the evidence). If there is a security problem, who is responsible, if he is responsible, you can write it. If something happens, take out the chat record


you'd better ask him first why he didn't add it.


say, if something happens, will you carry the pan

  • How does springmvc CRUD mssql?

    < H2 > problem description < H2 > I want to achieve a restful webapi operation mssql database for the simplest addition, deletion, modification and query, after learning restful api has a general understanding, but ssm connection query mssql database...

MySQL Query : SELECT * FROM `codeshelper`.`v9_news` WHERE status=99 AND catid='6' ORDER BY rand() LIMIT 5
MySQL Error : Disk full (/tmp/#sql-temptable-64f5-1b3ad8f-2b5ac.MAI); waiting for someone to free some space... (errno: 28 "No space left on device")
MySQL Errno : 1021
Message : Disk full (/tmp/#sql-temptable-64f5-1b3ad8f-2b5ac.MAI); waiting for someone to free some space... (errno: 28 "No space left on device")
Need Help?