Hoteldruid not safe with Postgres

Post here if you think you have found a bug in hoteldruid or error in its documentation.

Moderator: marco

Post Reply
JustBob
Posts: 7
Joined: Wed Apr 23, 2014 8:52 pm

Hoteldruid not safe with Postgres

Post by JustBob »

I would like to warn everyone not to use Hoteldruid with Postgres.
There is a serious bug which enables attackers to inject arbitrary sql commands which can result in the takeover of the database!
How can I contact the dev in private?
marco
Posts: 1332
Joined: Tue Jul 05, 2005 6:00 pm
Location: Roma, Italia

Re: Hoteldruid not safe with Postgres

Post by marco »

Hello,
you can mail me at info@digitaldruid.net, as stated in the announcement post on this forum.

Regards,
Marco
Problems installing, configuring, upgrading?
Try the easiest way to use HotelDruid:
https://www.digitaldruid.net/hosted/index.php
Post Reply