Skip to content

Commit 01cfb64

Browse files
Potential fix for code scanning alert no. 20: Log entries created from user input
Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com>
1 parent 1c98933 commit 01cfb64

File tree

1 file changed

+2
-1
lines changed

1 file changed

+2
-1
lines changed

NorthwindCRUD/Controllers/QueryBuilderController.cs

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -48,7 +48,8 @@ public QueryBuilderController(DataContext dataContext, IMapper mapper, ILogger<Q
4848
[Produces("application/json")]
4949
public ActionResult<QueryBuilderResult> ExecuteQuery(Query query)
5050
{
51-
logger.LogInformation("Executing query for entity: {Entity}", query.Entity);
51+
var sanitizedEntity = query.Entity.Replace("\r", "").Replace("\n", "");
52+
logger.LogInformation("Executing query for entity: {Entity}", sanitizedEntity);
5253
var t = query.Entity.ToLower(CultureInfo.InvariantCulture);
5354
return Ok(new QueryBuilderResult
5455
{

0 commit comments

Comments
 (0)