update page now
PHP 8.1.34 Released!

Voting

: three plus five?
(Example: nine)

The Note You're Voting On

Richard dot Corfield at gmail dot com
14 years ago
The best way has got to be parameterised queries. Then it doesn't matter what the user types in the data goes to the database as a value. 

A quick search online shows some possibilities in PHP which is great! Even on this site - http://php.net/manual/en/pdo.prepared-statements.php
which also gives the reasons this is good both for security and performance.

<< Back to user notes page

To Top