diff --git a/db/hotimedb.go b/db/hotimedb.go index 442e36d..b206f2a 100644 --- a/db/hotimedb.go +++ b/db/hotimedb.go @@ -711,6 +711,9 @@ func (that *HoTimeDB) varCond(k string, v interface{}) (string, []interface{}) { k = "`" + k + "`" } where += " " + k + "=" + ObjToStr(v) + case "[##]": //直接添加value到sql,需要考虑防注入,value比如:"a>b" + + where += " " + ObjToStr(v) case "[#!]": k = strings.Replace(k, "[#!]", "", -1) if !strings.Contains(k, ".") {