From 850b88dd97a5e6ab07ad9b59d14e186acded6161 Mon Sep 17 00:00:00 2001 From: myh Date: Sat, 7 Oct 2023 19:57:03 +0800 Subject: [PATCH] =?UTF-8?q?=E6=B7=BB=E5=8A=A0=E6=B3=A8=E9=87=8A?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- src/main/java/com/example/springdemo/dao/impl/CommonDao.java | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/main/java/com/example/springdemo/dao/impl/CommonDao.java b/src/main/java/com/example/springdemo/dao/impl/CommonDao.java index 07337e1..edbd8ca 100644 --- a/src/main/java/com/example/springdemo/dao/impl/CommonDao.java +++ b/src/main/java/com/example/springdemo/dao/impl/CommonDao.java @@ -11,10 +11,10 @@ public class CommonDao { DataBaseUtil dataBaseUtil = new DataBaseUtil(); public int delete(Connection ct, PreparedStatement ps, ResultSet rs, String sql, Long id) { - int flag; try { ct = dataBaseUtil.getConnection(); + // FIXME: 未对传入sql语句检测,可能有sql注入攻击 ps = ct.prepareStatement(sql); ps.setLong(1, id); flag = ps.executeUpdate();