[OpenSER-Devel] TEXT vs BLOB data in database modules

Dan Pascu dan at ag-projects.com
Mon Apr 21 12:50:53 CEST 2008


On Monday 21 April 2008, Bogdan-Andrei Iancu wrote:
> Hi Dan,
>
> Right, this is one more reason for having in the DB API a clear
> distinction between the string-like and blob-like types.

SQL injection can happen with any of blob, text, char, varchar if not 
escaped. There is no distinction between the 2 regarding this issue.

-- 
Dan



More information about the Devel mailing list