1.轉為帶參數查詢
String sql=""select id from student where name='?';
Connection
connect
= DriverManager.getConnection(
"jdbc:mysql://10.82.80.7:3306/haitao"
,
"root"
,
"123456"
);
PreparedStatement
pStmt
=
connect
.prepareStatement(
sql
);
pStmt
.setString(1, name
);
pStmt
.executeUpdate();
2.將字符串中的單引號轉換為兩個單引號。