java.sql.SQLException: sql injection violation, class com.alibaba.druid.sql.ast.statement.SQLCommentStatement not allow : comment on table jswoa1.con_attach is '附件表'

GitHub | jxf114208 | 2 months ago
tip
Click on the to mark the solution that helps you, Samebug will learn from it.
As a community member, you’ll be rewarded for you help.
  1. 0

    oracle数据库表和列的注释语句无法执行,被 java.sql.SQLException: sql injection violation

    GitHub | 2 months ago | jxf114208
    java.sql.SQLException: sql injection violation, class com.alibaba.druid.sql.ast.statement.SQLCommentStatement not allow : comment on table jswoa1.con_attach is '附件表'
  2. 0

    执行验证sql: select 1 时大量报错java.sql.SQLNonTransientConnectionException: Could not read resultset: unexpected end of stream, read 0 bytes from 4

    GitHub | 9 months ago | tonnyyi
    java.sql.SQLNonTransientConnectionException: Could not read resultset: unexpected end of stream, read 0 bytes from 4 Query is : select 1
  3. 0

    ParserException: syntax error

    GitHub | 1 year ago | 4garfield
    com.alibaba.druid.sql.parser.ParserException: syntax error, error in :'VALUES 1',expect VALUES, actual VALUES VALUES
  4. Speed up your debug routine!

    Automated exception search integrated into your IDE

  5. 0

    GitHub comment 820#100646655

    GitHub | 2 years ago | wing1000
    java.sql.SQLException: sql injection violation, syntax error: syntax error, error in :'like "%"?"%" and status = 'display'',expect QUES, actual QUES % : select * from article where title like "%"?"%" and status = 'display' and `check` = 'yes' order by createTime desc limit ?,?
  6. 0

    oracle下执行特定SQL时,解析报错。

    GitHub | 3 years ago | nickycheng
    com.alibaba.druid.sql.parser.ParserException: syntax error, expect RPAREN, actual IDENTIFIER within

    Not finding the right solution?
    Take a tour to get the most out of Samebug.

    Tired of useless tips?

    Automated exception search integrated into your IDE

    Root Cause Analysis

    1. java.sql.SQLException

      sql injection violation, class com.alibaba.druid.sql.ast.statement.SQLCommentStatement not allow : comment on table jswoa1.con_attach is '附件表'

      at com.alibaba.druid.wall.WallFilter.check()
    2. druid
      DruidPooledStatement.executeUpdate
      1. com.alibaba.druid.wall.WallFilter.check(WallFilter.java:726)
      2. com.alibaba.druid.wall.WallFilter.statement_executeUpdate(WallFilter.java:525)
      3. com.alibaba.druid.filter.FilterChainImpl.statement_executeUpdate(FilterChainImpl.java:2375)
      4. com.alibaba.druid.filter.FilterAdapter.statement_executeUpdate(FilterAdapter.java:2486)
      5. com.alibaba.druid.filter.FilterEventAdapter.statement_executeUpdate(FilterEventAdapter.java:327)
      6. com.alibaba.druid.filter.FilterChainImpl.statement_executeUpdate(FilterChainImpl.java:2375)
      7. com.alibaba.druid.proxy.jdbc.StatementProxyImpl.executeUpdate(StatementProxyImpl.java:225)
      8. com.alibaba.druid.pool.DruidPooledStatement.executeUpdate(DruidPooledStatement.java:164)
      8 frames
    3. Java RT
      Method.invoke
      1. sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
      2. sun.reflect.NativeMethodAccessorImpl.invoke(Unknown Source)
      3. sun.reflect.DelegatingMethodAccessorImpl.invoke(Unknown Source)
      4. java.lang.reflect.Method.invoke(Unknown Source)
      4 frames
    4. org.jdbcdslog
      StatementLoggingHandler.invoke
      1. org.jdbcdslog.StatementLoggingHandler.invoke(StatementLoggingHandler.java:27)
      1 frame
    5. com.sun.proxy
      $Proxy84.executeUpdate
      1. com.sun.proxy.$Proxy84.executeUpdate(Unknown Source)
      1 frame
    6. Hibernate
      Configuration.buildSessionFactory
      1. org.hibernate.tool.hbm2ddl.SchemaUpdate.execute(SchemaUpdate.java:252)
      2. org.hibernate.tool.hbm2ddl.SchemaUpdate.execute(SchemaUpdate.java:203)
      3. org.hibernate.internal.SessionFactoryImpl.<init>(SessionFactoryImpl.java:522)
      4. org.hibernate.cfg.Configuration.buildSessionFactory(Configuration.java:1859)
      5. org.hibernate.cfg.Configuration.buildSessionFactory(Configuration.java:1930)
      5 frames