发布时间:2020-06-10 23:23:34
1. if

    This statement would provide an optional text search type of functionality.

    <select id="findActiveBlogWithTitleLike" resultType="Blog">


      WHERE state = 'ACTIVE'

      <if test="title != null">

        AND title = #{title}



2. choose, when, otherwise

    Sometimes we dont want all of the conditionals to apply, instead we want to choose only one case among many options.

    <select id="findActiveBlogLike" resultType="Blog">



        <when test="title != null">

          AND title = #{title}


        <when test="author != null and author.name != null">

          AND author_name = #{author.name}



          AND featured = 1




3. set

    The set element can be used to dynamically include columns to update, and leave out others.


    <update id="updateAuthorIfNecessary">

      update Author


          <if test="username != null">username=#{username},</if>

          <if test="password != null">password=#{password},</if>

          <if test="email != null">email=#{email},</if>

          <if test="bio != null">bio=#{bio}</if>


      where id=#{id}



    <update id="updateAuthorIfNecessary">

      update Author set

          <if test="username != null">username=#{username},</if>

          <if test="password != null">password=#{password},</if>

          <if test="email != null">email=#{email},</if>

          <if test="bio != null">bio=#{bio}</if>

      where id=#{id}


    If bio is null

    A. update Author set username = 'xx', password= 'xx', email = 'xx'[not has , due to <set> tag will remove it] where id = 'x'

    B. update Author set username = 'xx', password= 'xx', email = 'xx', where id = 'x'

4. foreach

    The foreach element is very powerful, and allows you to specify a collection, declare item and index variables that can be used inside the body of the element. It also allows you to specify opening and closing strings, and add a separator to place in between iterations. The element is smart in that it won’t accidentally append extra separators.

    <select id="selectPostIn" resultType="domain.blog.Post">

      SELECT *


      WHERE ID in

      <foreach item="item" index="index" collection="list"

          open="(" separator="," close=")">




1. trim

<trim prefix="WHERE" prefixOverrides="AND |OR ">



    select * from user 

    <trim prefix="WHERE" prefixoverride="AND |OR">

    <if test="name != null and name.length()>0"> AND name=#{name}</if>

    <if test="gender != null and gender.length()>0"> AND gender=#{gender}</if>


    If name and gender are not null, the SQL will be like this: select * from user where name = 'xx' and gender = 'xx'.


    prefixoverride: remove 1st AND/OR

    update user

    <trim prefix="set" suffixoverride="," suffix=" where id = #{id} ">

    <if test="name != null and name.length()>0"> name=#{name} , </if>

    <if test="gender != null and gender.length()>0"> gender=#{gender} ,  </if>


    If name and gender are not null, the SQL will be like this: update user set name='xx' , gender='xx' where id='x'.

    suffix: 后缀

    suffixoverride: remove last character ,

    wheresearch condition


    A)Escape character in MyBatis XML


    where id >= 1(wrong)

    where id &gt;= 1(correct)





    By default, using the #{} syntax will cause MyBatis to generate PreparedStatement properties and set the values safely against the PreparedStatement parameters (e.g. ?). While this is safer, faster and almost always preferred, sometimes you just want to directly inject a string unmodified into the SQL Statement. For example, for ORDER BY, you might use something like this:

    ORDER BY ${columnName}

    Here MyBatis won't modify or escape the string.

    NOTE It's not safe to accept input from a user and supply it to a statement unmodified in this way. This leads to potential SQL Injection attacks and therefore you should either disallow user input in these fields, or always perform your own escapes and checks.

