From cacee71e39a6bcc7c3740a061c232eb531364b72 Mon Sep 17 00:00:00 2001 From: Abhishek Kumar <53809098+abhishekraoas@users.noreply.github.com> Date: Fri, 4 Oct 2024 01:36:37 +0530 Subject: [PATCH] Fix code scanning alert no. 21: Database query built from user-controlled sources Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> --- server/controllers/user.controllers.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/server/controllers/user.controllers.js b/server/controllers/user.controllers.js index 1b10f19..45cd929 100644 --- a/server/controllers/user.controllers.js +++ b/server/controllers/user.controllers.js @@ -47,7 +47,7 @@ const handleUserLogin = async (req, res) => { } // Find user by email - const user = await userModel.findOne({ email }); + const user = await userModel.findOne({ email: { $eq: email } }); if (!user) { return res.status(400).json({ message: "User not found " }); }