Unescaped parameter $deleteRow used in $wpdb->query($deleteRow)\n$deleteRow assigned unsafely at line 334:\n $deleteRow = $wpdb->prepare( "Delete from {$table_name} where id IN ($idsPlaceholder)", $ids )
Unescaped parameter $entry_count_query used in $wpdb->get_var($entry_count_query)\n$entry_count_query assigned unsafely at line 182:\n $entry_count_query = $wpdb->prepare(\n "SELECT count(id) FROM %i WHERE 1 = 1 and DATE_FORMAT(sent_date,GET_FORMAT(DATE,'JIS')) >= %s and DATE_FORMAT(sent_date,GET_FORMAT(DATE,'JIS')) <= %s ". $this->get_filter_params($params),\n $table_name,\n $params['startDate'],\n $params['endDate'],\n )\n$params assigned unsafely at line 136:\n $params = $this->get_params( $request )\n$request used without escaping.
Unescaped parameter $entry_query used in $wpdb->get_results($entry_query)\n$entry_query assigned unsafely at line 165:\n $entry_query = $wpdb->prepare(\n\t\t\t"SELECT DISTINCT id, to_email, subject, message, headers, attachments, DATE_FORMAT(sent_date, '%%Y/%%m/%%d %%H:%%i:%%S') as sent_date ,attachments_file as files FROM %i WHERE 1 = 1 and DATE_FORMAT(sent_date,GET_FORMAT(DATE,'JIS')) >= %s and DATE_FORMAT(sent_date,GET_FORMAT(DATE,'JIS')) <= %s ".$this->get_filter_params($params)." order by id desc limit %d",\n\t\t\t$table_name,\n\t\t\t$params['startDate'],\n\t\t\t$params['endDate'],\n\t\t\t$limit\n\t\t)\n$params assigned unsafely at line 136:\n $params = $this->get_params( $request )\n$request used without escaping.