diff --git a/src/db/contents.ts b/src/db/contents.ts index 3cdb65e..485fd5b 100644 --- a/src/db/contents.ts +++ b/src/db/contents.ts @@ -75,6 +75,7 @@ class KnexContentsAccessor implements ContentAccessor{ query = query.from("contents"); } if(word !== undefined){ + //don't worry about sql injection. query = query.where('title','like',`%${word}%`); } if(content_type !== undefined){