Browse Source

修复:SQL语法漏洞

dev_shibei_match
wxz 4 years ago
parent
commit
6019fd9122
  1. 10
      epmet-user/epmet-user-server/src/main/resources/mapper/GovStaffRoleDao.xml

10
epmet-user/epmet-user-server/src/main/resources/mapper/GovStaffRoleDao.xml

@ -132,11 +132,13 @@
gov_staff_role
WHERE
DEL_FLAG = 0
AND (
<foreach collection="roleIds" item="roleId" separator=" OR ">
ID = #{roleId}
</foreach>
<if test="roleIds != null and roleIds.size() > 0">
AND (
<foreach collection="roleIds" item="roleId" separator=" OR ">
ID = #{roleId}
</foreach>
)
</if>
</select>
<select id="getStaffRoles" resultType="com.epmet.entity.GovStaffRoleEntity">
SELECT

Loading…
Cancel
Save