Hacker News new | ask | show | jobs
by btilly 4877 days ago
Huh, I thought you had pasted the URL wrong. But it is a bug on this site that swallowed the quote.

Anyways add a ' to the end of that URL and you'll see clear evidence of a SQL injection bug. But it is just demonstrating that the bug is there. It would take more work to get access to their database.