Bladeren bron

fix: SQL注入异常调整

chenjianhua 2 maanden geleden
bovenliggende
commit
5d650cd397

+ 1 - 1
service-base/src/main/resources/mapper/DeletionInfoMapper.xml

@@ -129,7 +129,7 @@
         </if>
         <choose>
             <when test="sort != null and sort !='' and sort=='lastDeletionDate' and order != null and order !=''">
-                order by d.last_deletion_date ${order}
+                order by d.last_deletion_date #{order}
             </when>
             <otherwise>
                 order by d.last_deletion_date desc

+ 1 - 1
service-base/src/main/resources/mapper/DistributionMapper.xml

@@ -91,7 +91,7 @@
         </if>
         <choose>
             <when test="sort != null and sort !='' and sort=='distributeDate' and order != null and order !=''">
-                order by d.distribute_date ${order}
+                order by d.distribute_date #{order}
             </when>
             <otherwise>
                 order by d.distribute_date desc

+ 1 - 1
service-base/src/main/resources/mapper/EmailFundAssetMapper.xml

@@ -102,7 +102,7 @@
         </if>
         <choose>
             <when test="sort != null and sort !='' and sort=='priceDate' and order != null and order !=''">
-                order by asset.price_date ${order}
+                order by asset.price_date #{order}
             </when>
             <otherwise>
                 order by asset.price_date desc

+ 1 - 1
service-base/src/main/resources/mapper/EmailFundNavMapper.xml

@@ -106,7 +106,7 @@
         </if>
         <choose>
             <when test="sort != null and sort !='' and sort=='priceDate' and order != null and order !=''">
-                order by nav.price_date ${order}
+                order by nav.price_date #{order}
             </when>
             <otherwise>
                 order by nav.price_date desc

+ 2 - 2
service-base/src/main/resources/mapper/EmailParseInfoMapper.xml

@@ -94,10 +94,10 @@
         <include refid="sqlwhereSearch"/>
         <choose>
             <when test="sort != null and sort !='' and sort=='parseDate' and order != null and order !=''">
-                order by epi.parse_date ${order}
+                order by epi.parse_date #{order}
             </when>
             <when test="sort != null and sort !='' and sort=='emailDate'  and order != null and order !=''">
-                order by epi.email_date ${order}
+                order by epi.email_date #{order}
             </when>
             <otherwise>
                 order by epi.parse_date desc

+ 1 - 1
service-base/src/main/resources/mapper/FundAliasMapper.xml

@@ -126,7 +126,7 @@
                     WHEN a.last_price_date IS NULL THEN 1
                 ELSE 0
                 END,
-                a.last_price_date ${order}
+                a.last_price_date #{order}
             </when>
             <otherwise>
                 order by a.last_price_date desc

+ 2 - 2
service-base/src/main/resources/mapper/FundInfoMapper.xml

@@ -96,7 +96,7 @@
                     WHEN a.lastPriceDate IS NULL THEN 1
                 ELSE 0
                 END,
-                a.lastPriceDate ${order}
+                a.lastPriceDate #{order}
             </when>
             <when test="sort != null and sort !='' and sort=='firstPriceDate' and order != null and order !=''">
                 order by
@@ -104,7 +104,7 @@
                 WHEN a.firstPriceDate IS NULL THEN 1
                 ELSE 0
                 END,
-                a.firstPriceDate ${order}
+                a.firstPriceDate #{order}
             </when>
             <otherwise>
                 order by a.lastPriceDate desc

+ 1 - 1
service-base/src/main/resources/mapper/FundNavAssetMapper.xml

@@ -51,7 +51,7 @@
         </if>
         <choose>
             <when test="sort != null and sort !='' and sort=='priceDate' and order != null and order !=''">
-                order by price_date ${order}
+                order by price_date #{order}
             </when>
             <otherwise>
                 order by price_date desc