Skip to content

Instantly share code, notes, and snippets.

@avgerin0s
Created September 27, 2014 18:08
Show Gist options
  • Save avgerin0s/13dfd5ed3e60fdf68ef8 to your computer and use it in GitHub Desktop.
Save avgerin0s/13dfd5ed3e60fdf68ef8 to your computer and use it in GitHub Desktop.
unless File.exist?('Gemfile')
File.write('Gemfile', <<-GEMFILE)
source 'https://rubygems.org'
gem 'rails', github: 'rails/rails'
gem 'arel', github: 'rails/arel'
gem 'rack', github: 'rack/rack'
gem 'i18n', github: 'svenfuchs/i18n'
gem 'sqlite3'
GEMFILE
system 'bundle'
end
require 'bundler'
Bundler.setup(:default)
require 'active_record'
require 'minitest/autorun'
require 'logger'
Minitest::Test = MiniTest::Unit::TestCase unless defined?(Minitest::Test)
ActiveRecord::Base.establish_connection(adapter: "sqlite3", database: ":memory:")
ActiveRecord::Base.logger = Logger.new(STDOUT)
ActiveRecord::Schema.define do
create_table :articles do |t|
t.string :content
end
end
class Article < ActiveRecord::Base
include ActiveRecord::Sanitization
end
class SanitizeSqlLikeBug < Minitest::Test
def test_sanitize_sql_like_bug
article = Article.new
article.content = "I wish I had not new \n lines"
article.save!
assert_equal 1, Article.where("content like ?",
"#{Article.sanitize(article.content)}%").count
end
end
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment