修复mybatis-plus排序字段的sql注入问题,优化saber代码生成模板

This commit is contained in:
smallchill 2019-07-02 16:02:22 +08:00
parent eb9ddd1b7e
commit 9d107e3696

View File

@ -28,7 +28,7 @@ import java.util.Map;
* @author Chill * @author Chill
*/ */
public class SqlKeyword { public class SqlKeyword {
private final static String SQL_REGEX = "'|%|--|insert|delete|update|select|count|group|union|create|drop|truncate|alter|grant|execute|exec|xp_cmdshell|call|declare|sql"; private final static String SQL_REGEX = "'|%|--|insert|delete|update|select|count|group|union|drop|truncate|alter|grant|execute|exec|xp_cmdshell|call|declare|sql";
private static final String EQUAL = "_equal"; private static final String EQUAL = "_equal";
private static final String NOT_EQUAL = "_notequal"; private static final String NOT_EQUAL = "_notequal";