Unescaped parameter $column used in $wpdb->get_row($wpdb->prepare( "SELECT * FROM {$table} WHERE {$column} LIKE %s ORDER BY {$key_column} ASC LIMIT 1", $key ))\n$column assigned unsafely at line 264:\n $column = 'meta_key'\n$key_column assigned unsafely at line 265:\n $key_column = 'meta_id'\n$value_column assigned unsafely at line 266:\n $value_column = 'meta_value'\n$key assigned unsafely at line 269:\n $key = $wpdb->esc_like( $this->identifier . '_batch_' ) . '%'
Unescaped parameter $column used in $wpdb->get_var($wpdb->prepare( "SELECT COUNT(*) FROM {$table}\tWHERE {$column} LIKE %s", $key ))\n$column assigned unsafely at line 195:\n $column = 'meta_key'\n$key assigned unsafely at line 198:\n $key = $wpdb->esc_like( $this->identifier . '_batch_' ) . '%'
Unescaped parameter $column used in $wpdb->get_row($wpdb->prepare(\n\t\t\t\t\t"\n\t\t\tSELECT *\n\t\t\tFROM {$table}\n\t\t\tWHERE {$column} LIKE %s\n\t\t\tORDER BY {$key_column} ASC\n\t\t\tLIMIT 1\n\t\t", $key\n\t\t\t\t))\n$column assigned unsafely at line 281:\n $column = 'meta_key'\n$key_column assigned unsafely at line 282:\n $key_column = 'meta_id'\n$value_column assigned unsafely at line 283:\n $value_column = 'meta_value'\n$key assigned unsafely at line 286:\n $key = $wpdb->esc_like( $this->identifier . '_batch_' ) . '%'
Affected Plugins
Plugins that have instances of this rule violation
Unescaped parameter $column used in $wpdb->get_var($wpdb->prepare(\n\t\t\t\t\t"\n\t\t\tSELECT COUNT(*)\n\t\t\tFROM {$table}\n\t\t\tWHERE {$column} LIKE %s\n\t\t", $key\n\t\t\t\t))\n$column assigned unsafely at line 204:\n $column = 'meta_key'\n$key assigned unsafely at line 207:\n $key = $wpdb->esc_like( $this->identifier . '_batch_' ) . '%'
Unescaped parameter $count_rows_sql used in $wpdb->get_results($count_rows_sql)\n$count_rows_sql assigned unsafely at line 127:\n $count_rows_sql .= $where\n$where assigned unsafely at line 122:\n $where = " WHERE meta_value LIKE '%http%'"