dimanche 19 février 2017

security of input::get and eloquent

$this->validate($request, [
    'state' => 'required',
    'zipcode' => 'required',
    'address' => 'required',
    ],[
    'state.required'=>'state required',
    'zipcode.required'=>'zipcode required',
    'address.required'=>'address required',
    ]);
    $Userdata = Userdata::where('user_id',Auth::user()->id)->first();
   $userinfo->update(Input::only('state', 'zipcode','address'));

Is this secure to sql injection? I have found that the quotes are stored in the database without escaping Is direct store input to db is secure?I do not need escape data ?



from Newest questions tagged laravel-5 - Stack Overflow http://ift.tt/2kCfIVi
via IFTTT

Aucun commentaire:

Enregistrer un commentaire