duancheng1955 2016-01-13 16:00
浏览 35
已采纳

将表单请求直接传递给Laravel / Eloquent中的模型是否安全?

I'm using Laravel/Eloquent outside of the the laravel..

for some user scenarios i need to write my own Validation Class since I'm not using all the Laravel components..

So my question is: should I care sql injection in my Validation Class?..In other words is the following piece of code already safe?

//$user is an instance from a User Class extends Eloquent..
$user->username = $_REQUEST['username'];
  • 写回答

1条回答 默认 最新

报告相同问题?