---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Disable SQL Error Messages \[Updated in Security Center 1.3 and 1.5\]

# Disable SQL Error Messages \[Updated in Security Center 1.3 and 1.5\] {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Use the glide.db.loguser property to disable SQL error messages
from rendering in a browser.
If glide.db.loguser is not set to the recommended value of false,
then sensitive server-side error messages could be displayed to end-users. Error
messages can include stack traces and information about the structure of the database
that could provide an attacker the knowledge needed to perform successful SQL Injection
should the preconditions exist. As defense in depth, these error messages should not be
displayed to the end user.

## More information {#sc-disabling-sql-error-messages__section_more_information}

{#sc-disabling-sql-error-messages__table_ajc_b43_3kb__entry__2}

| Attribute | Description |
|-|-|
| Property name | glide.db.loguser |
| Configuration type | System Properties (/sys_properties_list.do) |
| Category | [Error handling and logging](https://servicenow-prod.fluidtopics.net/5UPE7LGBqExLy85ZBJP~_w "The error handling and logging category addresses the quality and verbosity of logged information exposed to stakeholders.") |
| Purpose | To disable SQL error messages from displaying within the browser. |
| Type | Boolean |
| Recommended value | false |
| Default value | true |
| Security risk rating | 3.1 |
| Functional impact | This remediation disables rendering of SQL error messages. There is no impact to any functionality. |
| Security risk | (Medium) No sensitive SQL information that could help an attacker should appear as a part of error message on a web page. |
[ ]

{#sc-disabling-sql-error-messages__table_ajc_b43_3kb}

To learn more about adding or creating a system
property, see [Add a system property](https://www.servicenow.com/docs/access?context=t_AddAPropertyUsingSysPropsList&version=australia&pubname=australia-platform-administration&ft:locale=en-US).

