Red Hat Bugzilla – Bug 837993
Search Fields can be duped to search for different content using HQL
Last modified: 2013-07-01 19:33:14 EDT
You can enter any HQL into most of the search fields and get custom content. It doesn't appear as though you could do much dmg though as you can't use semicolons in HQL.
Fixed in build 20121123-1253.
The backend search now uses the JPA Criteria API to perform all queries. This binds parameters so that they are parsed as a value and won't try and parse the entered values as SQL.