My project code is scanned by fortify, it report that the character of $ has the risk about sql injection. But the code is generated by mybatis-gererator automatically, the $ is just table's column variate. There is not risk actually but reported. How can i do? The result of report cannot ignore.
1.4m articles
1.4m replys
5 comments
57.0k users