Symfony 查询错误:应为文字,得到 '"'

Error with a Symfony query : Expected Literal, got '"'

我有以下查询:

$query = $em->createQueryBuilder()
            ->select('u.id, u.username, u.username_canonical, u.email, u.email_canonical, u.last_login, u.name, u.type, u.phone, u.site, u.agency, u.subtype, u.info, u.created_date, u.vip')
            ->from('ContrateAdminBundle:Fosuser', 'u')
            ->where('u.created_date BETWEEN "'.$fromdateaccounts.'" AND "'.$todateaccounts.'" ')                      
            ->getQuery();

$results = $query->getResult();

在 Symfony 中获取用户数据,但出现以下错误:

[Syntax Error] line 0, col 223: Error: Expected Literal, got '"'
500 Internal Server Error - QueryException
1 linked Exception: QueryException »

我的查询输出是:

SELECT u.id, u.username, u.username_canonical, u.email, u.email_canonical, u.last_login, u.name, u.type, u.phone, u.site, u.agency, u.subtype, u.info, u.created_date, u.vip
FROM ContrateAdminBundle:Fosuser u
WHERE u.created_date BETWEEN "2014-08-04 13:29" AND "2014-10-30 13:29" 

SQL 中的字符串文字用单引号 ' 表示,而不是双引号 ",因此您必须在查询中将 " 替换为字符串分隔符通过 ':

$query = $em->createQueryBuilder()
            ->select('u.id, u.username, u.username_canonical, u.email, u.email_canonical, u.last_login, u.name, u.type, u.phone, u.site, u.agency, u.subtype, u.info, u.created_date,u.vip')
            ->from('ContrateAdminBundle:Fosuser', 'u')
            ->where('u.created_date BETWEEN \'${fromdateaccounts}\' AND \'{$todateaccounts}\'')                      
            ->getQuery();

你也可以使用 Expr :

$queryBuilder = $em->createQueryBuilder();

...
->where($queryBuilder->expr()->between('u.created_date', $fromdateaccounts, $todateaccounts));

请使用参数。接受的答案可能会产生 SQL 次注入。

    ->where('u.something = ?1')
    ->setParameter(1, '')