How can I prevent SQL injection with arbitrary JSONB query string provided by an external client? August 5, 2020August 5, 2020 PCIS Support Team Security You could allow the users to specify a path within the JSON document, and then parameterize that path within a call to a function like … Related:Mailings from our servers and containing some text blocked