Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

To be fair, PRAGMA trusted_schema=OFF is recommended by the docs, it just isn't default. The docs also recommend the SQLITE_DIRECTONLY flag on all custom SQL functions.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: