<i id='Etalx'><tr id='Etalx'><dt id='Etalx'><q id='Etalx'><span id='Etalx'><b id='Etalx'><form id='Etalx'><ins id='Etalx'></ins><ul id='Etalx'></ul><sub id='Etalx'></sub></form><legend id='Etalx'></legend><bdo id='Etalx'><pre id='Etalx'><center id='Etalx'></center></pre></bdo></b><th id='Etalx'></th></span></q></dt></tr></i><div id='Etalx'><tfoot id='Etalx'></tfoot><dl id='Etalx'><fieldset id='Etalx'></fieldset></dl></div>

    1. <small id='Etalx'></small><noframes id='Etalx'>

      • <bdo id='Etalx'></bdo><ul id='Etalx'></ul>
      <tfoot id='Etalx'></tfoot><legend id='Etalx'><style id='Etalx'><dir id='Etalx'><q id='Etalx'></q></dir></style></legend>

    2. 如何在 Python 的 SQL 语句中使用变量?

      How to use variables in SQL statement in Python?(如何在 Python 的 SQL 语句中使用变量?)
    3. <small id='1uEgX'></small><noframes id='1uEgX'>

      <tfoot id='1uEgX'></tfoot>
      <i id='1uEgX'><tr id='1uEgX'><dt id='1uEgX'><q id='1uEgX'><span id='1uEgX'><b id='1uEgX'><form id='1uEgX'><ins id='1uEgX'></ins><ul id='1uEgX'></ul><sub id='1uEgX'></sub></form><legend id='1uEgX'></legend><bdo id='1uEgX'><pre id='1uEgX'><center id='1uEgX'></center></pre></bdo></b><th id='1uEgX'></th></span></q></dt></tr></i><div id='1uEgX'><tfoot id='1uEgX'></tfoot><dl id='1uEgX'><fieldset id='1uEgX'></fieldset></dl></div>
        • <bdo id='1uEgX'></bdo><ul id='1uEgX'></ul>

                <tbody id='1uEgX'></tbody>

              <legend id='1uEgX'><style id='1uEgX'><dir id='1uEgX'><q id='1uEgX'></q></dir></style></legend>

              • 本文介绍了如何在 Python 的 SQL 语句中使用变量?的处理方法,对大家解决问题具有一定的参考价值,需要的朋友们下面随着跟版网的小编来一起学习吧!

                问题描述

                我有以下 Python 代码:

                I have the following Python code:

                cursor.execute("INSERT INTO table VALUES var1, var2, var3,")
                

                其中 var1 是整数,var2var3 是字符串.

                where var1 is an integer, var2 and var3 are strings.

                如何在没有 Python 的情况下编写变量名作为查询文本的一部分?

                How can I write the variable names without Python including them as part of the query text?

                推荐答案

                cursor.execute("INSERT INTO table VALUES (%s, %s, %s)", (var1, var2, var3))
                

                注意参数是作为元组传递的.

                Note that the parameters are passed as a tuple.

                数据库 API 对变量进行正确的转义和引用.注意不要使用字符串格式化操作符(%),因为

                The database API does proper escaping and quoting of variables. Be careful not to use the string formatting operator (%), because

                1. 它不会进行任何转义或引用.
                2. 它容易受到不受控制的字符串格式攻击,例如SQL 注入.

                这篇关于如何在 Python 的 SQL 语句中使用变量?的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持跟版网!

                本站部分内容来源互联网,如果有图片或者内容侵犯了您的权益,请联系我们,我们会在确认后第一时间进行删除!

                相关文档推荐

                groupby multiple coords along a single dimension in xarray(在xarray中按单个维度的多个坐标分组)
                Group by and Sum in Pandas without losing columns(Pandas中的GROUP BY AND SUM不丢失列)
                Is there a way of group by month in Pandas starting at specific day number?( pandas 有从特定日期开始的按月分组的方式吗?)
                Group by + New Column + Grab value former row based on conditionals(GROUP BY+新列+基于条件的前一行抓取值)
                Groupby and interpolate in Pandas(PANDA中的Groupby算法和插值算法)
                Pandas - Group Rows based on a column and replace NaN with non-null values(PANAS-基于列对行进行分组,并将NaN替换为非空值)
                    <tbody id='U7uFj'></tbody>

                      <bdo id='U7uFj'></bdo><ul id='U7uFj'></ul>

                        • <i id='U7uFj'><tr id='U7uFj'><dt id='U7uFj'><q id='U7uFj'><span id='U7uFj'><b id='U7uFj'><form id='U7uFj'><ins id='U7uFj'></ins><ul id='U7uFj'></ul><sub id='U7uFj'></sub></form><legend id='U7uFj'></legend><bdo id='U7uFj'><pre id='U7uFj'><center id='U7uFj'></center></pre></bdo></b><th id='U7uFj'></th></span></q></dt></tr></i><div id='U7uFj'><tfoot id='U7uFj'></tfoot><dl id='U7uFj'><fieldset id='U7uFj'></fieldset></dl></div>
                          <legend id='U7uFj'><style id='U7uFj'><dir id='U7uFj'><q id='U7uFj'></q></dir></style></legend>
                          <tfoot id='U7uFj'></tfoot>
                        • <small id='U7uFj'></small><noframes id='U7uFj'>