INADA Naoki
|
90cb6c31d5
Use blacklist to avoid vulnerability with interpolation
|
11 年之前 |
INADA Naoki
|
2a634df783
Fix sentence in interpolateParams document.
|
11 年之前 |
INADA Naoki
|
52a5860d0b
Fix missing db.Close()
|
11 年之前 |
INADA Naoki
|
0f22bc29c1
extract function to reserve buffer
|
11 年之前 |
INADA Naoki
|
e517683745
Allow interpolateParams only with ascii, latin1 and utf8 collations
|
11 年之前 |
INADA Naoki
|
20b75cd3d3
Fix comment
|
11 年之前 |
INADA Naoki
|
1fd051484e
Add link to StackOverflow describe vulnerability using multibyte encoding
|
11 年之前 |
INADA Naoki
|
b4f0315a64
Bit detailed info about vulnerability when using multibyte encoding.
|
11 年之前 |
INADA Naoki
|
e11c825316
Inlining mysqlConn.escapeBytes and mysqlConn.escapeString
|
11 年之前 |
INADA Naoki
|
d65f96afcc
Fix typo
|
11 年之前 |
INADA Naoki
|
bfbe6c59bb
travis: Drop Go 1.1 and add Go 1.4
|
11 年之前 |
INADA Naoki
|
fcea44760c
Round under microsecond
|
11 年之前 |
INADA Naoki
|
c285e39201
Use digits10 and digits01 to format datetime.
|
11 年之前 |
INADA Naoki
|
0c7ae4638c
test for escapeString*
|
11 年之前 |
INADA Naoki
|
43536c7d6d
Specialize escape functions for string
|
11 年之前 |
INADA Naoki
|
88aeb98098
append string... to []byte without cast.
|
11 年之前 |
INADA Naoki
|
916a1f2433
escapeString -> escapeBackslash
|
11 年之前 |
INADA Naoki
|
8826242dab
More acculate estimation of upper bound
|
11 年之前 |
INADA Naoki
|
9f84dfbb88
Remove one more allocation
|
11 年之前 |
INADA Naoki
|
0b75396232
Inline datetime formatting
|
11 年之前 |
INADA Naoki
|
029731571e
Reduce allocs in interpolateParams.
|
11 年之前 |
INADA Naoki
|
468b9e5379
Fix benchmark
|
11 年之前 |
INADA Naoki
|
9faabe593d
Don't write microseconds when Time.Nanosecond() == 0
|
11 年之前 |
INADA Naoki
|
dd7b87c50b
Add benchmark for interpolateParams()
|
11 年之前 |
INADA Naoki
|
04866ee036
Fix nits pointed in pull request.
|
11 年之前 |
INADA Naoki
|
6c8484b12c
Add interpolateParams document to README
|
11 年之前 |
INADA Naoki
|
3c8fa904c2
substitutePlaceholder -> interpolateParams
|
11 年之前 |
INADA Naoki
|
42a1efd12a
Don't stop test on MySQLWarnings
|
11 年之前 |
arvenil
|
b4732595f0
Test if inserted data is correctly retrieved after being escaped
|
11 年之前 |
arvenil
|
e6bf23ab50
Add basic SQL injection tests, including NO_BACKSLASH_ESCAPES sql_mode
|
11 年之前 |