Skip to content

Commit 5a1d685

Browse files
committed
use safe query
1 parent 3c0cf3a commit 5a1d685

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

orm/query.go

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -366,7 +366,7 @@ func (q *Query) AppendColumn(columns ...string) *Query {
366366
t := q.tableModel.Table()
367367
if q.columns == nil {
368368
for _, f := range t.Fields {
369-
q.columns = append(q.columns, fieldAppender{fmt.Sprintf("%s.%s", t.Alias, f.SQLName)})
369+
q.columns = append(q.columns, SafeQuery("?.?", t.Alias, f.Column))
370370
}
371371
}
372372
return q.Column(columns...)
@@ -378,7 +378,7 @@ func (q *Query) AppendColumnExpr(expr string, params ...interface{}) *Query {
378378
t := q.tableModel.Table()
379379
if q.columns == nil {
380380
for _, f := range t.Fields {
381-
q.columns = append(q.columns, fieldAppender{fmt.Sprintf("%s.%s", t.Alias, f.SQLName)})
381+
q.columns = append(q.columns, SafeQuery("?.?", t.Alias, f.Column))
382382
}
383383
}
384384
return q.ColumnExpr(expr, params...)

0 commit comments

Comments
 (0)