Advance your Data & AI career with 50 days of live learning, dataviz contests, hands-on challenges, study groups & certifications and more!
Get registeredGet Fabric Certified for FREE during Fabric Data Days. Don't miss your chance! Request now
Hi everyone,
While doing testing on one of our reports we uncovered that we can actually perform SQL injection via the Q&A visual .
You can even test this by writting
'or 1=1--
in the Q&A visual of the Power BI sample report offered by Microsoft called "Sales and Returns sample v201912"
Is there a way to stop SQL injections from taking place via the Q&A visual ?
Solved! Go to Solution.
Hi @amitchandak thank you for the advice ; i created the following issue ; fingers crossed 😄
SQL injection in Q&A Visual - Microsoft Power BI Community
@EmanuelKakuja , Please report an issue - https://community.powerbi.com/t5/Issues/idb-p/Issues
Hi @amitchandak thank you for the advice ; i created the following issue ; fingers crossed 😄
SQL injection in Q&A Visual - Microsoft Power BI Community
Advance your Data & AI career with 50 days of live learning, contests, hands-on challenges, study groups & certifications and more!
Check out the October 2025 Power BI update to learn about new features.