Class SQLUtil

    • Constructor Detail

      • SQLUtil

        public SQLUtil()
        Deprecated.
    • Method Detail

      • escapeSQL

        public static String escapeSQL​(String constant)
        Deprecated.
        Escapes different special characters in strings that are passed to SQL. Replaces the following:
        • ' is replaced with ''
        • \x00 is removed
        • \ is replaced with \\
        • " is replaced with \"
        • \x1a is removed
        Also note! The escaping done here may or may not be enough to prevent any and all SQL injections so it is recommended to check user input before giving it to the SQLContainer/TableQuery.
        Parameters:
        constant -
        Returns:
        \\\'\'