• Jeff Moden (10/6/2013)


    Just a reminder to remember not to use anything from the parameters in direct concatenation in the dynamic SQL. Poorly formed dynamic SQL is still the leading cause of hack-attacks.

    Agree to jeff 🙂