From c24cd14fd700b2846623d0c3e9683adb30c7062b Mon Sep 17 00:00:00 2001 From: RuoYi <yzz_ivy@163.com> Date: 星期四, 27 五月 2021 17:55:05 +0800 Subject: [PATCH] 修复两处存在SQL注入漏洞问题 --- src/main/resources/mybatis/system/SysRoleMenuMapper.xml | 7 +++++++ 1 files changed, 7 insertions(+), 0 deletions(-) diff --git a/src/main/resources/mybatis/system/SysRoleMenuMapper.xml b/src/main/resources/mybatis/system/SysRoleMenuMapper.xml index 005265d..1adf545 100644 --- a/src/main/resources/mybatis/system/SysRoleMenuMapper.xml +++ b/src/main/resources/mybatis/system/SysRoleMenuMapper.xml @@ -17,6 +17,13 @@ delete from sys_role_menu where role_id=#{roleId} </delete> + <delete id="deleteRoleMenu" parameterType="Long"> + delete from sys_role_menu where role_id in + <foreach collection="array" item="roleId" open="(" separator="," close=")"> + #{roleId} + </foreach> + </delete> + <insert id="batchRoleMenu"> insert into sys_role_menu(role_id, menu_id) values <foreach item="item" index="index" collection="list" separator=","> -- Gitblit v1.9.3