Defect #19786

'%' and '_' are treated as SQL wildcards in issue filter

Added by Go MAEDA over 6 years ago. Updated 16 days ago.

Status:ClosedStart date:
Priority:NormalDue date:
Assignee:-% Done:

0%

Category:Issues
Target version:-
Resolution:Fixed Affected version:3.0.2

Description

Please see the following screenshot. "m_nag%r" matches "manager". Is this an expected behavior?

issue-filter-screenshot.png (55.2 KB) Go MAEDA, 2015-05-08 06:30


Related issues

Related to Redmine - Feature #13347: Filtering by issue subject with wildcard New
Related to Redmine - Patch #35073: Escape values in LIKE statements to prevent injection of ... Closed

History

#2 Updated by Go MAEDA over 2 years ago

  • Related to Feature #13347: Filtering by issue subject with wildcard added

#3 Updated by St├ęphane Frath over 2 years ago

'%' works as wildcard for me, but '_' does not always work.
I was looking for the wildcard character and found your defect, please do not fix it :)

#4 Updated by Go MAEDA 8 months ago

  • Related to Patch #35073: Escape values in LIKE statements to prevent injection of placeholders (_ or %) added

#5 Updated by Go MAEDA 16 days ago

  • Status changed from New to Closed
  • Resolution set to Fixed

Fixed by #35073.

In the upcoming Redmine 5.0, SQL wildcards will no longer be available, but multiple keywords AND search will be supported instead (#35764).

Also available in: Atom PDF