update ruoyi-common/src/main/java/com/ruoyi/common/core/page/PageDomain.java.

增加判断,防止sql注入
This commit is contained in:
thirty_pan 2022-06-30 09:28:03 +00:00 committed by Gitee
parent 1959b02220
commit eb094ff08f
No known key found for this signature in database
GPG Key ID: 173E9B9CA92EEF8F
1 changed files with 6 additions and 1 deletions

View File

@ -30,7 +30,12 @@ public class PageDomain
{
return "";
}
return StringUtils.toUnderScoreCase(orderByColumn) + " " + isAsc;
if("asc".equals(StringUtils.toUnderScoreCase(isAsc))||"desc".equals(StringUtils.toUnderScoreCase(isAsc))){
return StringUtils.toUnderScoreCase(orderByColumn) + " " + isAsc;
}else{
return StringUtils.toUnderScoreCase(orderByColumn) + " asc";
}
}
public Integer getPageNum()