且构网

分享程序员开发的那些事...
且构网 - 分享程序员编程开发的那些事

基于用户输入的MySQL查询

更新时间:2023-01-11 18:49:58

要保存SQL注入攻击,请使用:

To save from SQL injection attack, use:

$search_query = mysql_real_escape_string($_POST['blahblah']);

$query  = "SELECT name, age FROM people WHERE uid = '".$search_query."' LIMIT 0 , 1";