escape quotes

This commit is contained in:
Antonio J. Delgado 2023-01-26 08:27:50 +02:00
parent 8e7dc7d756
commit 4d9f0e58a4

View file

@ -64,7 +64,8 @@ class find_duplicate_files:
return False
def _cache_file(self, file, hash):
result = self.cur.execute(f"INSERT INTO files (hash, file) VALUES ('{file}', '{hash}')")
file_sql = file.replace("'", "\'")
result = self.cur.execute(f"INSERT INTO files (hash, file) VALUES ('{file_sql}', '{hash}')")
self.cache_db.commit()
return result