We use cookies to serve our customers and website visitors in the best possible way. Cookies are used for the proper functioning of the website and for improving the user experience, monitoring visitor traffic and marketing purposes. By continuing to browse the site, you agree to our use of cookies. You can read more about cookies here.
com.vaadin.data.util.sqlcontainer.
Class SQLUtil
- java.lang.Object
-
- com.vaadin.data.util.sqlcontainer.SQLUtil
-
All Implemented Interfaces:
public class SQLUtil extends Object implements Serializable
See Also:
-
-
Method Detail
-
escapeSQL
public static String escapeSQL(String constant)
Escapes different special characters in strings that are passed to SQL. Replaces the following:
- ' is replaced with ''
- \x00 is removed
- \ is replaced with \\
- " is replaced with \"
- \x1a is removed Also note! The escaping done here may or may not be enough to prevent any and all SQL injections so it is recommended to check user input before giving it to the SQLContainer/TableQuery.
-
-
Parameters:
constant
-
Returns:
\\\'\'