htmlentities 在 propel symfony 1.2 中无法正常工作

问题描述 投票:0回答:1

问题

  • 用双引号替换单引号

    echo $movement_data
    

输出字符串:

 '200407', '200396', '200397', '200398', '200399', '200400', '200401', '200402', '200403', '200404'

推进代码:

 $c->add(VmemberDetailsPeer::PERSON_ID,array(htmlentities($movement_data, ENT_QUOTES)),Criteria::IN);
 echo $c->toString();
 $person = VmemberDetailsPeer::doSelect($c);

推动查询

 Criteria: SQL (may not be complete): SELECT FROM vmember_details WHERE vmember_details.PERSON_ID IN (:p1) Params: vmember_details.PERSON_ID => ''200407', '200396', '200397', '200398', '200399', '200400', '200401', '200402', '200403', '200404''

输出:

 array(0) { }

我需要什么

  • 我需要在where子句中传递相同的逗号分隔字符串。

  • 如果我直接将 move_data 通讯分隔字符串推入数组($movement_data)

  • 它输出特殊字符,如'�2',等等...我在where子句中有html特殊字符。

不要使用 Htmlentities 结果推进查询

  SELECT FROM vmember_details 
  WHERE vmember_details.PERSON_ID IN (:p1) 

参数:

 vmember_details.PERSON_ID => '\'200407\', \'200396\', \'200397\', \'200398\', \'200399\', \'200400\', \'200401\', \'200402\', \'200403\', \'200404\''

我尝试使用将字符串爆炸为数组的解决方案:

 $x=explode(",",$movement_data);

输出:

Array
(
[0] => '200407'
[1] => '200396'
[2] => '200397'
[3] => '200398'

)
$c->add(VmemberDetailsPeer::PERSON_ID,$x,Criteria::IN);
echo $c->toString();
$person = VmemberDetailsPeer::doSelect($c);

推动查询输出:

SELECT * FROM vmember_details WHERE vmember_details.PERSON_ID IN (:p1,:p2,:p3,:p4,:p5,:p6,:p7,:p8,:p9,:p10) Params: vmember_details.PERSON_ID => '\'200407\'', vmember_details.PERSON_ID => ' \'200396\'', vmember_details.PERSON_ID => ' \'200397\'', vmember_details.PERSON_ID => ' \'200398\'', vmember_details.PERSON_ID => ' \'200399\'', vmember_details.PERSON_ID => ' \'200400\'', vmember_details.PERSON_ID => ' \'200401\'', vmember_details.PERSON_ID => ' \'200402\'', vmember_details.PERSON_ID => ' \'200403\'', vmember_details.PERSON_ID => ' \'200404\''

我需要传递相同的字符串 where 子句。

php oracle symfony symfony1
1个回答
1
投票

您从字符串中提取数据,输出就是该数组

$x=explode(",",$movement_data);

Array
(
    [0] => '200407'
    [1] => '200396'
    [2] => '200397'
    [3] => '200398'
)

然后将该数组传递给创建 SQL 语句的函数。

好的,现在请看下面的代码示例

$a1 = array(1,2,3);
$a2 = array('1','2','3');
$a3 = array("'1'","'2'","'3'");

print_r($a1);
print_r($a2);
print_r($a3);


Array
(
    [0] => 1
    [1] => 2
    [2] => 3
)
Array
(
    [0] => 1
    [1] => 2
    [2] => 3
)
Array
(
    [0] => '1'
    [1] => '2'
    [2] => '3'
)

第一个数组 $a1 包含整数,第二个数组包含带数字的字符串,第三个数组包含带数字的字符串用单引号括起来。

这正是你的问题!

您必须从数字中删除单引号,因为驱动程序将专门处理它们(用\'替换'),这就是您所观察到的:

SELECT FROM vmember_details WHERE vmember_details.PERSON_ID IN (:p1) Params: vmember_details.PERSON_ID => '\'200407\', \'200396\', \'200397\', \'200398\', \'200399\', \'200400\', \'200401\', \'200402\', \'200403\', \'200404\''

事实上,那里发生了一些不同的事情。您向语句传递了一个包含单引号的字符串。驱动程序检查字符串,遇到单引号并将其替换为斜杠单引号。

© www.soinside.com 2019 - 2024. All rights reserved.