mirror of
https://github.com/chillzhuang/blade-tool
synced 2024-11-05 18:19:29 +08:00
⚡ 修复mybatis-plus排序字段的sql注入问题,优化saber代码生成模板
This commit is contained in:
parent
eb9ddd1b7e
commit
9d107e3696
@ -28,7 +28,7 @@ import java.util.Map;
|
|||||||
* @author Chill
|
* @author Chill
|
||||||
*/
|
*/
|
||||||
public class SqlKeyword {
|
public class SqlKeyword {
|
||||||
private final static String SQL_REGEX = "'|%|--|insert|delete|update|select|count|group|union|create|drop|truncate|alter|grant|execute|exec|xp_cmdshell|call|declare|sql";
|
private final static String SQL_REGEX = "'|%|--|insert|delete|update|select|count|group|union|drop|truncate|alter|grant|execute|exec|xp_cmdshell|call|declare|sql";
|
||||||
|
|
||||||
private static final String EQUAL = "_equal";
|
private static final String EQUAL = "_equal";
|
||||||
private static final String NOT_EQUAL = "_notequal";
|
private static final String NOT_EQUAL = "_notequal";
|
||||||
|
Loading…
Reference in New Issue
Block a user