From 6b680ace26dc95031a1b7a3e33f8785c112f787d Mon Sep 17 00:00:00 2001 From: king <18310653075@163.com> Date: 星期一, 20 四月 2020 18:32:01 +0800 Subject: [PATCH] 2020-04-20 --- src/utils/utils.js | 376 ++++++++++++++++++++++++++++++----------------------- 1 files changed, 212 insertions(+), 164 deletions(-) diff --git a/src/utils/utils.js b/src/utils/utils.js index b59e5a2..2a4bd06 100644 --- a/src/utils/utils.js +++ b/src/utils/utils.js @@ -51,131 +51,126 @@ } /** + * @description sql璇硶楠岃瘉 + * @return {String} sql sql璇彞 + * @return {String} type 楠岃瘉绫诲瀷 + */ + static verifySql (sql, type) { + if (!sql) return '' + let chars = [ + {key: 'create', reg: /(^|\s)create\s/ig}, + {key: 'insert', reg: /(^|\s)insert\s/ig}, + {key: 'delete', reg: /(^|\s)delete\s/ig}, + {key: 'update', reg: /(^|\s)update\s/ig}, + {key: 'set', reg: /(^|\s)set\s/ig}, + {key: 'drop', reg: /(^|\s)drop\s/ig}, + {key: 'alter', reg: /(^|\s)alter\s/ig}, + {key: 'truncate', reg: /(^|\s)truncate\s/ig}, + {key: 'if', reg: /(^|\s)if\s/ig}, + {key: 'exec', reg: /exec/ig}, + {key: 'OBJECT', reg: /object/ig}, + {key: 'sys.', reg: /sys\./ig}, + {key: 'kill', reg: /kill/ig} + ] + + if (type === 'customscript') { + chars = chars.map(char => !['insert', 'delete', 'update', 'set', 'if', 'exec'].includes(char.key)) + } + + let error = '' + chars.forEach(char => { + if (!error && char.reg.test(sql)) { + error = char.key + } + }) + + return error + } + + /** * @description sql鍔犲瘑 * @return {String} value */ - static formatOptions (value) { + static formatOptions (value, isUnFormat = false) { if (!value) return '' let salt = 'minKe' // 鐩愬�� // 鍏抽敭瀛楄浆鎹㈣鍒� - let format = [{ - key: 'select', - value: ' msltk ' - }, { - key: 'from', - value: ' mfrmk ' - }, { - key: 'where', - value: ' mwhrk ' - }, { - key: 'order by', - value: ' modbk ' - }, { - key: 'asc', - value: ' modack ' - }, { - key: 'desc', - value: ' moddesk ' - }, { - key: 'top', - value: ' mtpk ' - }, { - key: 'like', - value: ' mlkk ' - }, { - key: 'not like', - value: ' mnlkk ' - }, { - key: 'between', - value: ' mbtnk ' - }, { - key: 'and', - value: ' madk ' - }, { - key: 'insert', - value: ' mistk ' - }, { - key: 'into', - value: ' mitk ' - }, { - key: 'update', - value: ' muptk ' - }, { - key: 'delete', - value: ' mdelk ' - }, { - key: 'begin', - value: ' mbgink ' - }, { - key: 'end', - value: ' medk ' - }, { - key: 'if', - value: ' mefk ' - }, { - key: 'while', - value: ' mwilk ' - }, { - key: 'create', - value: ' mcrtk ' - }, { - key: 'alter', - value: ' matek ' - }, { - key: 'len', - value: ' mlnk ' - }, { - key: 'left', - value: ' mlftk ' - }, { - key: 'right', - value: ' mritk ' - }, { - key: 'union', - value: ' munok ' - }, { - key: 'varchar', - value: ' mvcrk ' - }, { - key: 'getdate', - value: ' mgtdtk ' - }, { - key: 'TRY', - value: ' mtryonek ' - }, { - key: 'TRAN', - value: ' mtrnk ' - }, { - key: 'goto', - value: ' mgtk ' - }, { - key: 'set', - value: ' mstk ' - }, { - key: 'ROLLBACK', - value: ' mrlbkk ' - }] + let format = [ + { key: 'select', value: ' msltk ' }, + { key: 'from', value: ' mfrmk ' }, + { key: 'where', value: ' mwhrk ' }, + { key: 'order by', value: ' modbk ' }, + { key: 'asc', value: ' modack ' }, + { key: 'desc', value: ' moddesk ' }, + { key: 'top', value: ' mtpk ' }, + { key: 'like', value: ' mlkk ' }, + { key: 'not like', value: ' mnlkk ' }, + { key: 'between', value: ' mbtnk ' }, + { key: 'and', value: ' madk ' }, + { key: 'insert', value: ' mistk ' }, + { key: 'into', value: ' mitk ' }, + { key: 'update', value: ' muptk ' }, + { key: 'delete', value: ' mdelk ' }, + { key: 'begin', value: ' mbgink ' }, + { key: 'end', value: ' medk ' }, + { key: 'if', value: ' mefk ' }, + { key: 'while', value: ' mwilk ' }, + { key: 'create', value: ' mcrtk ' }, + { key: 'alter', value: ' matek ' }, + { key: 'len', value: ' mlnk ' }, + { key: 'left', value: ' mlftk ' }, + { key: 'right', value: ' mritk ' }, + { key: 'union', value: ' munok ' }, + { key: 'varchar', value: ' mvcrk ' }, + { key: 'getdate', value: ' mgtdtk ' }, + { key: 'TRY', value: ' mtryonek ' }, + { key: 'TRAN', value: ' mtrnk ' }, + { key: 'goto', value: ' mgtk ' }, + { key: 'set', value: ' mstk ' }, + { key: 'ROLLBACK', value: ' mrlbkk ' } + ] - // 鏇挎崲鍏抽敭瀛� - format.forEach(item => { - let reg = new RegExp('(^|\\s)' + item.key + '(\\s|$)', 'ig') - value = value.replace(reg, item.value) - }) + if (!isUnFormat) { // 鍔犲瘑 + value = value.replace(/\n/ig, ' \n ') + // 鏇挎崲鍏抽敭瀛� + format.forEach(item => { + let reg = new RegExp('(^|\\s)' + item.key + '(\\s|$)', 'ig') + value = value.replace(reg, item.value) + }) + + // 1銆佹浛鎹�%绗︼紙鏁版嵁搴撲腑瑙f瀽鍚巗ql鎶ラ敊锛� + value = value.replace(/%/ig, ' mpercent ') - // 1銆佹浛鎹�%绗︼紙鏁版嵁搴撲腑瑙f瀽鍚巗ql鎶ラ敊锛夛紝2銆佸幓闄ゆ敹灏惧浣欑┖鏍� - value = value.replace(/%/ig, ' mpercent ') - // value = value.replace(/(^\s|\s$)/ig, '') + // 1銆乪ncode缂栫爜锛堜腑鏂囧瓧绗﹁秴鍑篵ase64鍔犲瘑鑼冨洿锛夛紝2銆乥ase64鍔犲瘑 + value = window.btoa(window.encodeURIComponent(value)) + + // 鎻掑叆瀛楃 + let index = Math.floor(value.length / 2) + value = value.slice(0, index) + salt + value.slice(index) + + // base64鍔犲瘑 + value = window.btoa(value) + } else { // 瑙e瘑 + try { + value = window.atob(value) + value = value.replace(salt, '') + value = window.decodeURIComponent(window.atob(value)) - // 1銆乪ncode缂栫爜锛堜腑鏂囧瓧绗﹁秴鍑篵ase64鍔犲瘑鑼冨洿锛夛紝2銆乥ase64鍔犲瘑 - value = window.btoa(window.encodeURIComponent(value)) + value = value.replace(/\smpercent\s/g, '%') - // 鎻掑叆瀛楃 - let index = Math.floor(value.length / 2) - value = value.slice(0, index) + salt + value.slice(index) + format.forEach(item => { + let reg = new RegExp(item.value, 'g') + value = value.replace(reg, ' ' + item.key + ' ') + }) - // base64鍔犲瘑 - value = window.btoa(value) + value = value.replace(/\s\n\s/ig, '\n') + value = value.replace(/(^\s+|\s+$)/ig, '') + } catch { + console.warn('UnFormat Failure') + value = '' + } + } return value } @@ -477,6 +472,31 @@ let errors = [] let _topline = btn.range || 0 let upId = this.getuuid() + + let _initCustomScript = '' // 鍒濆鍖栬剼鏈� + let _prevCustomScript = '' // 榛樿sql鍓嶆墽琛岃剼鏈� + let _backCustomScript = '' // 榛樿sql鍚庢墽琛岃剼鏈� + + if (btn.scripts) { + btn.scripts.forEach(script => { + if (script.status === 'false') return + + if (script.position === 'init') { + _initCustomScript += ` + ${script.sql} + ` + } else if (script.position === 'front') { + _prevCustomScript += ` + ${script.sql} + ` + } else { + _backCustomScript += ` + ${script.sql} + ` + } + }) + } + let _Ltext = data.map((item, lindex) => { let vals = btn.columns.map((col, cindex) => { let val = item[col.Column] !== undefined ? item[col.Column] : '' @@ -619,21 +639,19 @@ let _insert = '' + if (_prevCustomScript) { + _insert += _prevCustomScript + } + if (btn.default !== 'false') { - _insert = ` + _insert += ` Insert into ${item.sheet} (${fields},createuserid,createuser,createstaff,bid) Select ${fields},@userid@,@username,@fullname,@BID@ From @${item.sheet} ` } - if (btn.scripts && btn.scripts.length > 0) { - btn.scripts.forEach(script => { - if (script.status === 'false') return - - _insert += ` - ${script.sql} - ` - }) + if (_backCustomScript) { + _insert += _backCustomScript } _sql = `declare @${item.sheet} table (${declarefields.join(',')},jskey nvarchar(50) ) @@ -642,7 +660,7 @@ Select @ErrorCode='', @retmsg='' select @UserName=UserName,@FullName=FullName from SUsers where UID=@UserID@ - + ${_initCustomScript} Insert into @${item.sheet} (${fields},jskey) ${_Ltext} ${_uniquesql} @@ -672,6 +690,36 @@ let BID = param.BID let verify = btn.verify || {} let _formFieldValue = {} + let _actionType = null + + if (verify.default !== 'false') { // 鍒ゆ柇鏄惁浣跨敤榛樿sql + _actionType = btn.sqlType + } + + let _initCustomScript = '' // 鍒濆鍖栬剼鏈� + let _prevCustomScript = '' // 榛樿sql鍓嶆墽琛岃剼鏈� + let _backCustomScript = '' // 榛樿sql鍚庢墽琛岃剼鏈� + + if (verify.scripts) { + verify.scripts.forEach(item => { + if (item.status === 'false') return + + if (item.position === 'init') { + _initCustomScript += ` + ${item.sql} + ` + } else if (item.position === 'front') { + _prevCustomScript += ` + ${item.sql} + ` + } else { + _backCustomScript += ` + ${item.sql} + ` + } + }) + } + // 闇�瑕佸0鏄庣殑鍙橀噺闆� // let _vars = ['tbid', 'ErrorCode', 'retmsg', 'BillCode', 'BVoucher', 'FIBVoucherDate', 'FiYear', 'UserName', 'FullName', 'ID', 'BID', 'LoginUID', 'SessionUid', 'UserID', 'Appkey'] let _vars = ['tbid', 'errorcode', 'retmsg', 'billcode', 'bvoucher', 'fibvoucherdate', 'fiyear', 'username', 'fullname', 'modulardetailcode'] @@ -706,6 +754,10 @@ if (!_vars.includes(_key)) { _vars.push(_key) + + if (form.fieldlen && form.fieldlen > 2048) { + form.fieldlen = 'max' + } let _type = `nvarchar(${form.fieldlen})` @@ -742,6 +794,10 @@ if (!_vars.includes(_key)) { _vars.push(_key) + + if (col.fieldlength && col.fieldlength > 2048) { + col.fieldlength = 'max' + } let _type = `nvarchar(${col.fieldlength || 50})` @@ -785,9 +841,6 @@ if (verify.billcodes) { verify.billcodes = verify.billcodes.filter(item => item.status !== 'false') } - if (verify.scripts) { - verify.scripts = verify.scripts.filter(item => item.status !== 'false') - } let userName = sessionStorage.getItem('User_Name') || '' let fullName = sessionStorage.getItem('Full_Name') || '' @@ -800,6 +853,10 @@ // 鍒濆鍖栧嚟璇佸強鐢ㄦ埛淇℃伅瀛楁 _sql += `select @BVoucher='',@FIBVoucherDate='',@FiYear='',@ErrorCode='',@retmsg='',@UserName='${userName}', @FullName='${fullName}' ` + + if (_initCustomScript) { + _sql += _initCustomScript + } // 鍚敤璐︽湡楠岃瘉 if (verify.accountdate === 'true') { @@ -888,7 +945,7 @@ // 鑷畾涔夐獙璇� if (verify.customverifys && verify.customverifys.length > 0) { - verify.customverifys.forEach(item => { + verify.customverifys.forEach(item => { _sql += `select @tbid='', @ErrorCode='',@retmsg='' select top 1 @tbid='X' from (${item.sql}) a If @tbid ${item.result === 'true' ? '!=' : '='}'' @@ -901,6 +958,7 @@ } // 鍗曞彿鐢熸垚锛屼娇鐢ㄤ笂绾d锛圔ID锛夋垨鍒楄〃鏁版嵁锛屽0鏄庡彉閲忥紙妫�楠岋級 + let _billcodesSql = '' if (verify.billcodes && verify.billcodes.length > 0) { verify.billcodes.forEach(item => { let _ModularDetailCode = '' @@ -932,7 +990,7 @@ _vars.push(_key) } - _sql += `${_declare} + _billcodesSql += `${_declare} select @BillCode='', @${_key}='', @ModularDetailCode='' ${_lpline} exec s_get_BillCode @@ -948,6 +1006,10 @@ set @${_key}=@BillCode ` }) + + if (_actionType !== 'insertOrUpdate') { + _sql += _billcodesSql + } } let hasvoucher = false @@ -979,29 +1041,14 @@ let primaryKeyName = ['id', 'bid', 'loginuid', 'sessionuid', 'userid', 'appkey'].includes(primaryKey.toLowerCase()) ? primaryKey + '@' : primaryKey - let _actionType = null - - if (verify.default !== 'false') { // 鍒ゆ柇鏄惁浣跨敤榛樿sql - _actionType = btn.sqlType - } - let _insertsql = '' - let _updatesql = '' if (_actionType === 'insert' || _actionType === 'insertOrUpdate') { // 娣诲姞璇彞 let keys = [] let values = [] formdata.forEach(item => { - if (item.type === 'funcvar') { - keys.push(item.key.toLowerCase()) - values.push('@' + item.key) - } else if (item.type === 'number') { - keys.push(item.key.toLowerCase()) - values.push(item.value) - } else { - keys.push(item.key.toLowerCase()) - values.push('\'' + item.value + '\'') - } + keys.push(item.key.toLowerCase()) + values.push('@' + item.key) }) if (!keys.includes(primaryKey.toLowerCase())) { @@ -1027,25 +1074,24 @@ keys.push('bid') } values.push('@BID@') + } else if (tab && tab.foreignKey && !keys.includes(tab.foreignKey.toLowerCase())) { + keys.push(tab.foreignKey) + values.push('@BID@') } keys = keys.join(',') values = values.join(',') _insertsql = `insert into ${btn.sql} (${keys}) select ${values};` - } else if (_actionType === 'insert' || _actionType === 'insertOrUpdate') { // 淇敼璇彞 + } + + let _updatesql = '' + if (_actionType === 'update' || _actionType === 'insertOrUpdate') { // 淇敼璇彞 let _form = [] let _arr = [] formdata.forEach(item => { _arr.push(item.key.toLowerCase()) - - if (item.type === 'funcvar') { - _form.push(item.key + '=@' + item.key) - } else if (item.type === 'number') { - _form.push(item.key + '=' + item.value) - } else { - _form.push(item.key + '=\'' + item.value + '\'') - } + _form.push(item.key + '=@' + item.key) }) if (!_arr.includes('modifydate')) { @@ -1065,9 +1111,12 @@ _form.push('FiYear=@FiYear') } } - _form = _form.join(',') _updatesql = `update ${btn.sql} set ${_form} where ${primaryKey}=@${primaryKeyName};` + } + + if (_prevCustomScript) { + _sql += _prevCustomScript } // 娣诲姞銆佷慨鏀广�侀�昏緫鍒犻櫎銆佺墿鐞嗗垹闄� @@ -1089,25 +1138,24 @@ } }) } - _sql += `insert into snote (remark,createuserid,CreateUser,CreateStaff) select '鍒犻櫎琛�:${btn.sql} 鏁版嵁: ${_msg}${primaryKey}='+@${primaryKeyName},@userid@,@username,@fullname delete ${btn.sql} where ${primaryKey}=@${primaryKeyName};` + _sql += `insert into snote (remark,createuserid,CreateUser,CreateStaff) select left('鍒犻櫎琛�:${btn.sql} 鏁版嵁: ${_msg}${primaryKey}='+@${primaryKeyName},200),@userid@,@username,@fullname delete ${btn.sql} where ${primaryKey}=@${primaryKeyName};` } else if (_actionType === 'insertOrUpdate') { _sql += `select @tbid='' select @tbid='X' from ${btn.sql} where ${primaryKey}=@ID@ if @tbid='' + begin + ${_billcodesSql} ${_insertsql} + end else + begin ${_updatesql} + end ` } - // 鎷兼帴鑷畾涔夎剼鏈� - if (verify.scripts && verify.scripts.length > 0) { - let _scripts = '' - verify.scripts.forEach(item => { - _scripts += ` - ${item.sql}` - }) - _sql += `${_scripts}` + if (_backCustomScript) { + _sql += _backCustomScript } _sql += ` -- Gitblit v1.8.0