- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

SQL injection in Q&A Visual
Hi everyone,
While doing testing on one of our reports we uncovered that we can actually perform SQL injection via the Q&A visual .
You can even test this by writting
'or 1=1--
in the Q&A visual of the Power BI sample report offered by Microsoft called "Sales and Returns sample v201912"
Is there a way to stop SQL injections from taking place via the Q&A visual ?
Solved! Go to Solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

Hi @amitchandak thank you for the advice ; i created the following issue ; fingers crossed 😄
SQL injection in Q&A Visual - Microsoft Power BI Community
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

@EmanuelKakuja , Please report an issue - https://community.powerbi.com/t5/Issues/idb-p/Issues
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

Hi @amitchandak thank you for the advice ; i created the following issue ; fingers crossed 😄
SQL injection in Q&A Visual - Microsoft Power BI Community

Helpful resources
Join us at the Microsoft Fabric Community Conference
March 31 - April 2, 2025, in Las Vegas, Nevada. Use code MSCUST for a $150 discount!
Power BI Monthly Update - February 2025
Check out the February 2025 Power BI update to learn about new features.

Subject | Author | Posted | |
---|---|---|---|
11-18-2024 10:14 AM | |||
03-22-2024 05:55 AM | |||
07-25-2024 05:06 AM | |||
12-18-2024 12:59 AM | |||
07-10-2024 07:18 AM |
User | Count |
---|---|
87 | |
81 | |
53 | |
38 | |
35 |