Definition
A classic web security flaw where an attacker sneaks database commands into ordinary user input.
A vulnerability class where user-controlled input is concatenated into SQL queries without sanitization, allowing attackers to execute arbitrary database commands.