in reply to SQL Injection myths under DBI?

Class::DBI provides some degree of protection from SQL injection. Even more than you've listed, Class::DBI is a nice layer that does things right to prevent you from doing bad things. For example, I believe it binds all variables for you.

But in general, I still don't think you can just disregard the threat. Rather, you should be aware of it and know how the modules you use do and do not protect you.