[SECURITY] Prevent SQLi in ext:lowlevel QueryGenerator 19/62719/2
authorFrank Naegler <frank.naegler@typo3.org>
Tue, 17 Dec 2019 09:53:17 +0000 (10:53 +0100)
committerOliver Hader <oliver.hader@typo3.org>
Tue, 17 Dec 2019 09:53:19 +0000 (10:53 +0100)
commit948df21e45cf8beffa3d472e5c06f2f84833e432
tree29779f9772758c165fb42307dca776bb8dff3ffd
parent0efda30ca4181898e17614a195b234954d353f2b
[SECURITY] Prevent SQLi in ext:lowlevel QueryGenerator

Resolves: #89452
Releases: master, 9.5, 8.7
Security-Commit: d73e50f02afc5459f737282ede6cc70579fe7181
Security-Bulletin: TYPO3-CORE-SA-2019-025
Change-Id: I55afb17f4b1509a3dfc945e28e5d35671f6c28f3
Reviewed-on: https://review.typo3.org/c/Packages/TYPO3.CMS/+/62719
Tested-by: Oliver Hader <oliver.hader@typo3.org>
Reviewed-by: Oliver Hader <oliver.hader@typo3.org>
typo3/sysext/core/Classes/Database/QueryGenerator.php
typo3/sysext/core/Classes/Database/QueryView.php
typo3/sysext/core/Tests/Functional/Database/QueryGeneratorTest.php