Joget DX 8 Stable Released
The stable release for Joget DX 8 is now available, with a focus on UX and Governance.
...
Warning | ||
---|---|---|
| ||
When using Hash Variable that uses URL parameter or user-inputted value in the SQL query, ensure that these hash variable(s) are escaped in the query! Make use of hash variable escape keywords, see Hash Variable - Escaping the Resultant Hash Variable. Example of VULNERABLE query:
To fix this, use ?sql hash variable escape:
|
English |
---|
Database SQL Query List Action allows you to perform SQL queries on one (a row action) or more records (a bulk action) in your datalist. You can specify which database to perform the SQL function, either the current Joget database (default datasource) or a custom datasource (external database). Database SQL Query List Action can be used to delete records or perform an update on one or more records based on user selection in the datalist checkboxes. |
...
APP_datalist_using_jdbc_dx_kb.jwa