escape percents in query condition

This commit is contained in:
Seb Bacon 2011-04-07 16:30:32 +01:00
parent 4ad3402ca6
commit b852e048c6
1 changed files with 1 additions and 0 deletions

View File

@ -47,6 +47,7 @@ def update_resource_visits(resource_id, recently, ever):
def get_resource_visits_for_url(url):
connection = model.Session.connection()
url = url.replace("%", "%%")
count = connection.execute(
"""SELECT visits_ever FROM resource_stats, resource
WHERE resource_id = resource.id