dongying195959 2017-08-21 17:36
浏览 731

如何在Laravel DB :: select绑定中转义单引号

Laravel adds single quotes around my orderBy which is causing the query to not execute as expected

I have tried numerous combinations of using DB::raw while trying to remove the single quotes from my select statement and got nowhere.

<?php
$sql = "SELECT cust_name, ad_text, total_sms FROM customers WHERE created_at > :startDate AND created_at < :endDate ORDER BY :orderBy DESC;";

return DB::Select($sql, ['startDate'=>$startDate,'endDate'=>$endDate, 'orderBy' => $orderBy]);?>

which comes out to

ORDER BY 'total_sms' DESC;

How do i escape this binding param so its single quotes are removed?

  • 写回答

2条回答 默认 最新

  • dongna1593 2017-08-21 17:43
    关注

    Add columns name between " ` " sign, not " ' ".

    • To escape single quotes, use: str_replace("'", "\\'", $str)
    评论

报告相同问题?

悬赏问题

  • ¥15 想问一下树莓派接上显示屏后出现如图所示画面,是什么问题导致的
  • ¥100 嵌入式系统基于PIC16F882和热敏电阻的数字温度计
  • ¥15 cmd cl 0x000007b
  • ¥20 BAPI_PR_CHANGE how to add account assignment information for service line
  • ¥500 火焰左右视图、视差(基于双目相机)
  • ¥100 set_link_state
  • ¥15 虚幻5 UE美术毛发渲染
  • ¥15 CVRP 图论 物流运输优化
  • ¥15 Tableau online 嵌入ppt失败
  • ¥100 支付宝网页转账系统不识别账号