Browse Source

update sqlkeyword

pull/518/head
RuoYi 3 months ago
parent
commit
adb22846a4
  1. 2
      ruoyi-common/src/main/java/com/ruoyi/common/utils/sql/SqlUtil.java

2
ruoyi-common/src/main/java/com/ruoyi/common/utils/sql/SqlUtil.java

@ -13,7 +13,7 @@ public class SqlUtil
/**
* 定义常用的 sql关键字
*/
public static String SQL_REGEX = "and |extractvalue|updatexml|exec |insert |select |delete |update |drop |count |chr |mid |master |truncate |char |declare |or |+|user()";
public static String SQL_REGEX = "and |extractvalue|updatexml|sleep|exec |insert |select |delete |update |drop |count |chr |mid |master |truncate |char |declare |or |union |like |+|/*|user()";
/**
* 仅支持字母数字下划线空格逗号小数点支持多个字段排序

Loading…
Cancel
Save