Commit c2381308 by woodsaj

quote table names passed by arguments

parent 76e9ebde
...@@ -29,7 +29,7 @@ func GetQuotaByTarget(query *m.GetQuotaByTargetQuery) error { ...@@ -29,7 +29,7 @@ func GetQuotaByTarget(query *m.GetQuotaByTargetQuery) error {
} }
//get quota used. //get quota used.
rawSql := fmt.Sprintf("SELECT COUNT(*) as count from %s where org_id=?", string(query.Target)) rawSql := fmt.Sprintf("SELECT COUNT(*) as count from %s where org_id=?", dialect.Quote(string(query.Target)))
resp := make([]*targetCount, 0) resp := make([]*targetCount, 0)
if err := x.Sql(rawSql, query.OrgId).Find(&resp); err != nil { if err := x.Sql(rawSql, query.OrgId).Find(&resp); err != nil {
return err return err
...@@ -69,7 +69,7 @@ func GetQuotas(query *m.GetQuotasQuery) error { ...@@ -69,7 +69,7 @@ func GetQuotas(query *m.GetQuotasQuery) error {
result := make([]*m.QuotaDTO, len(quotas)) result := make([]*m.QuotaDTO, len(quotas))
for i, q := range quotas { for i, q := range quotas {
//get quota used. //get quota used.
rawSql := fmt.Sprintf("SELECT COUNT(*) as count from %s where org_id=?", string(q.Target)) rawSql := fmt.Sprintf("SELECT COUNT(*) as count from %s where org_id=?", dialect.Quote(string(q.Target)))
resp := make([]*targetCount, 0) resp := make([]*targetCount, 0)
if err := x.Sql(rawSql, q.OrgId).Find(&resp); err != nil { if err := x.Sql(rawSql, q.OrgId).Find(&resp); err != nil {
return err return err
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment