Skip to content
This repository has been archived by the owner on Dec 13, 2022. It is now read-only.

[SNYK]Sanitized and bound queries (#11413) (#11445) #11456

Merged
merged 1 commit into from
Jul 29, 2022

Conversation

emabassi-ext
Copy link
Contributor

Description

Queries should be sanitized (if possible) and bound using PDO statement to reduce attack surface and clean legacy code

File: www/include/configuration/configObject/hostgroup_dependency/DB-Func.php

Lines: 130 - 142
infos : recently merged to develop + dev-21.10.x
Fixes # MON-14360

Type of change

  • Patch fixing an issue (non-breaking change)
  • New functionality (non-breaking change)
  • Breaking change (patch or feature) that might cause side effects breaking part of the Software

Target serie

  • 21.04.x
  • 21.10.x
  • 22.04.x
  • 22.10.x (master)

How this pull request can be tested ?

Create a hostgroup dependency

Duplicate it

Check duplicate object

Checklist

Community contributors & Centreon team

  • I have followed the coding style guidelines provided by Centreon
  • I have commented my code, especially new classes, functions or any legacy code modified. (docblock)
  • I have commented my code, especially hard-to-understand areas of the PR.
  • I have rebased my development branch on the base branch (master, maintenance).

@emabassi-ext emabassi-ext requested review from callapa, kduret, jeremyjaouen and a team July 29, 2022 10:02
@emabassi-ext emabassi-ext self-assigned this Jul 29, 2022
@sonarqube-decoration
Copy link

SonarQube Quality Gate

Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 1 Code Smell

No Coverage information No Coverage information
100.0% 100.0% Duplication

@emabassi-ext emabassi-ext merged commit be19aa8 into dev-21.10.x Jul 29, 2022
@emabassi-ext emabassi-ext deleted the MON-14360 branch July 29, 2022 10:42
emabassi-ext added a commit that referenced this pull request Jul 29, 2022
emabassi-ext added a commit that referenced this pull request Jul 29, 2022
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant