ããããè½æ¸ããã¾ãã 質åçãããã°ãããç¯å²ã§çãã¾ããæè¡æ å ±ã§èª¤ã£ã¦ãããã®ãããã°ãææé¡ãã¾ãã twitter 㧠@KAZAMAI_NaruTo å®ã«ã¤ã¶ããã¦ãã ããã ãã¦ãdblink ã§ã® Sanitizeã 8/5ã®æ¥è¨ã§ã¯ prepare ã使ãã°ããã¨æ¸ãããã dblink ã§ã¯æååã§æ¸¡ãããã ããçµå±åé¡ã解決ã§ããªãã ããããããã§ãæååã escape ããããã«ãã¦ããã postgresql ã«ã¯æååã escape ããé¢æ° quote_literal ãããã ããã使ãã°ããã ããã ã»ã»ã»ã£ã¦èãã¯çãã£ãã dblink ã§ã¯ query ãæååã§æ¸¡ãã SELECT foo(âXXXâï¼yyy) ã dblink ã«åãè¾¼ã㨠dblink(âSELECT foo(ââXXXââï¼yyy)â) ã£ã¦æãã«ãªããããã§ãxxxï¼
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}