Skip to content
Snippets Groups Projects
Commit 8e6fb934 authored by Fabien Zucchet's avatar Fabien Zucchet
Browse files

Try to fix SQL injections

parent 381f2ae4
Branches
No related tags found
No related merge requests found
......@@ -30,7 +30,7 @@ function getAdministrateurs(req, res) {
function addNewAdministrateur(req, res) {
var con = mysql.createConnection(dbConfig);
var query = "INSERT INTO `Admin` (`login`) VALUES (?)";
var query = "INSERT INTO `Admin` (`login`) VALUES (?);";
var inserts = [req.body.login];
con.connect();
con.query(query, inserts, (err, result) => {
......
......@@ -15,7 +15,7 @@ app.use(express.json());
app.use(express.urlencoded({ extended: false }));
app.use('/api', apiRouter);
app.use('/api/admin', apiAdminRouter);
app.use('/api/admin', oauth.authMiddleware, apiAdminRouter);
app.get('/api/login', function (req, res) {
res.redirect(oauth.getRedirectURI());
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment