Question
sql injection avoiding
If someone enters sql commands into a text element for address or name, how does cfqueryparam help protect against sql injection ?
Would a regular expression or something checking for dangerous key words help at least as much ?