using a placeholder with joins

前端 未结 2 888
囚心锁ツ
囚心锁ツ 2021-01-06 19:23

I\'m attempting to avoid any SQL injection vulnerabilities by substituting with my params on a join.

Category.joins(\"LEFT OUTER JOIN incomes ON incomes.cate         


        
2条回答
  •  粉色の甜心
    2021-01-06 19:57

    Try

    Category.joins(:incomes).where(:incomes => { :dept_id => params[:Dept] })
    

    And check out the Rails documentation for joining tables.

提交回复
热议问题