防止注入sql

前言:

<!DOCTYPE html>
<html lang="zh">

	<head>
		<meta charset="UTF-8" />
		<title>Document</title>
	</head>

	<body>
		内容<input type="text" />
		<button id="areaForm">提交</button>
		
		
		<script src="jquery.min.js"></script>
		<script>
				
				$("#areaForm").click(function() {
					if(SDHF.ischeckUser($("input[type='text']").val())){
						console.log("可以登录");
					}
				});
				var SDHF={};
				SDHF.ischeckUser = function(str) {
					var a = true;
					var re = /select|update|delete|exec|count|’|"|=|;|>|<|%|'/i;
					if(re.test(str)) {
						alert('请不要在搜索框中输入特殊字符', '提示信息');
						a = false;
					}
					return a;
					
				};
		</script>
	</body>

</html>

猜你喜欢

转载自blog.csdn.net/dongsdh/article/details/80997787