DCPM: CGI and Database sanitising

Simon Waters Simon at wretched.demon.co.uk
Fri Oct 17 12:47:08 CDT 2003


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Matthew Browning wrote:
> On Thursday 16 October 2003 20:41, Simon Waters wrote:
>
>>What ways do people use to sanitize data from tainted CGI data
> Use of placeholders protects you from this kind of thing.  We are also
> religiously checking untrusted user input with regexes.  There is also
> this CGI::Untaint module:
>
> http://search.cpan.org/~tmtm/CGI-Untaint-1.00/lib/CGI/Untaint.pm

Ta muchly, I can see my second perl CGI will be a lot more secure than
my first :(

>>Urm when are we meeting, someone name a day and a pub quickly?
>
> Thursday 30 October, in the evening, Exeter, pub TBC.

The Great Western or whatever the big white place is on the roundabout
by the exit of St Davids station is a good choice if anyone comes by
train. Parking there or on St Davids hill is usually easy.

The drink isn't cheap, but you can talk, and read if needs be, even use
a laptop if you are desparate ;)

> Last Thursday of the month henceforth.

Cool, although I have a nagging suspicion I agree to another regular
meeting thursdays, at the Great Western, if we have the same venue maybe
I can make both if they ever clash ;)
-----BEGIN PGP SIGNATURE-----
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQE/kCsaGFXfHI9FVgYRAmq3AJ92BDOEscfML+mPjFeyj7tKzh9FDgCghBGz
dWjdOP6yGkKjw6IUxK+kW1g=
=dvXs
-----END PGP SIGNATURE-----



More information about the Devoncornwall-pm mailing list