diff --git a/lib/controller/checks.py b/lib/controller/checks.py index 37a3c1c1d..517f63d75 100644 --- a/lib/controller/checks.py +++ b/lib/controller/checks.py @@ -346,7 +346,7 @@ def checkSqlInjection(place, parameter, value): injectable = True - if not injectable and not conf.string: + if not injectable and not conf.string and kb.pageStable: trueSet = set(extractTextTagContent(truePage)) falseSet = set(extractTextTagContent(falsePage)) candidate = reduce(lambda x, y: x or (y.strip() if y.strip() in (kb.pageTemplate or "") and y.strip() not in falsePage else None), (trueSet - falseSet), None)