Hacker News new | ask | show | jobs
by peterwwillis 4292 days ago
Database output is application input. All forms of input need to be sanitized, period.