diff --git a/backend/controllers/product.js b/backend/controllers/product.js index b031c3f..e482854 100644 --- a/backend/controllers/product.js +++ b/backend/controllers/product.js @@ -6,7 +6,7 @@ exports.addToFavorite = async (req, res) => { try { // Use parameterized query to prevent SQL injection const [result] = await db.execute( - "INSERT INTO Favorites (UserID, ProductID) VALUES (?, ?)", + "INSERT INTO Favorites (UserID, ProductID) VALUES unique(?, ?)", [userID, productsID], );