We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
大佬好,在提取路径时候含有特殊字符会导致报错: 建议增加空值判断以及特殊字符转义处理。Packer-Fuzzer-1.4/lib/Database.py改动代码如下: import pymysql
import pymysql
if api_path.split("/")[-1]=="": pathsplit = "/" else: pathsplit = api_path.split("/")[-1] sql = "insert into api_tree(path,name,from_js) values(\"" + pymysql.converters.escape_string(api_path) + "\",\"" + pymysql.converters.escape_string(pathsplit) + "\"," + str(jsFileID) + ")" `
if api_path.split("/")[-1]=="": pathsplit = "/" else: pathsplit = api_path.split("/")[-1] sql = "insert into api_tree(path,name,from_js) values(\"" + pymysql.converters.escape_string(api_path) + "\",\"" + pymysql.converters.escape_string(pathsplit) + "\"," + str(jsFileID) + ")"
The text was updated successfully, but these errors were encountered:
No branches or pull requests
大佬好,在提取路径时候含有特殊字符会导致报错:
建议增加空值判断以及特殊字符转义处理。Packer-Fuzzer-1.4/lib/Database.py改动代码如下:
import pymysql
if api_path.split("/")[-1]=="": pathsplit = "/" else: pathsplit = api_path.split("/")[-1] sql = "insert into api_tree(path,name,from_js) values(\"" + pymysql.converters.escape_string(api_path) + "\",\"" + pymysql.converters.escape_string(pathsplit) + "\"," + str(jsFileID) + ")"
`
The text was updated successfully, but these errors were encountered: