Control SQL injection in MVC

前端 未结 3 1222
情深已故
情深已故 2020-12-08 17:21

It\'s my first time developing using MVC and I want to make it secure.

When I use HtmlEncode it converts the String to the equivalent HTML String.

The user c

3条回答
  •  余生分开走
    2020-12-08 18:00

    LINQ and Entity Framework already check for SQL Injection for you.

    But you should read the documentation anyhow:

    LINQ MSDN Link (section SQL-Injection Attacks)

    Entity Framework MSDN Link (section Security Considerations for Queries)

    Hope it helps!

提交回复
热议问题