src/utils/utils.js
@@ -131,12 +131,15 @@ {key: 'sys.', reg: /(^|\s)sys\./ig}, {key: 'kill', reg: /(^|\s)kill\s/ig} ] if (type === 'customscript') { chars = chars.filter(char => !['insert', 'delete', 'update', 'set', 'if', 'exec'].includes(char.key)) } let error = '' sql = sql.replace(/sys\.fn_sqlvarbasetostr\(HashBytes\('MD5'/ig, '') // 跳过MD5加密 chars.forEach(char => { if (!error && char.reg.test(sql)) { error = char.key