Use prepared statement

This commit is contained in:
2024-12-30 23:47:40 +01:00
parent 4ce099621d
commit e5e85d494e
2 changed files with 15 additions and 5 deletions

View File

@ -20,10 +20,14 @@ func (e *ElectionModel) Insert(name string, tokens int, areVotersKnown bool, max
}
defer tx.Rollback()
result, err := tx.Exec(`
INSERT INTO elections (name, tokens, are_voters_known, max_voters, expires_at)
VALUES (?, ?, ?, ?, ?)`,
name, tokens, areVotersKnown, maxVoters, expiresAt)
stmt, err := tx.Prepare(`
INSERT INTO elections (name, tokens, are_voters_known, max_voters, expires_at)
VALUES (?, ?, ?, ?, ?)`)
if err != nil {
return 0, err
}
result, err := stmt.Exec(name, tokens, areVotersKnown, maxVoters, expiresAt)
if err != nil {
return 0, err
}
@ -33,7 +37,7 @@ func (e *ElectionModel) Insert(name string, tokens int, areVotersKnown bool, max
return 0, err
}
stmt, err := tx.Prepare(`
stmt, err = tx.Prepare(`
INSERT INTO choices (text, election_id)
VALUES (?, ?)`)
if err != nil {