Skip to content

URL parameter sanitization #310

Open
@nvindice

Description

@nvindice

Hi, I'm not sure where to post this best, so I created an issue here at the core package. Affected version is at least 2021.10 on TYPO3.

Additionally, I'm not sure where this problem comes from - I guess it's caching related.

Google stores a dozen URLs to our shop with additional parameters like ?currency=EUR"'`--)&locale=de&site=default. To me, this looks like somebody tried out SQL injections which was somehow cached and then later discovered by Google.

How to get rid of these "dirty" links?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions