Fixed Quote Marks in Inputs
| From: | Jonathan Hilgeman | Date: | Fri, 04 Jan 2002 20:05:23 +0000 |
| Subject: | Fixed Quote Marks in Inputs | ||
| Groups: | php.db | ||
| Request: | Send a blank email to php-db+get-15407@lists.php.net to get a copy of this message | ||
I finally came up with a reliable solution that I can use when I'm dealing
with form inputs that can contain quote marks (single or double quotes). To
store quote marks, you can str_replace them with their HTML code
equivalents. For single quote marks, this is ', and for double quote
marks it's "
So before I insert any input into my database, I run my below function on
all the data:
// Replace quotes with their ' and " equivalents
function PrepareQuotes($Var)
{
$Var = str_replace("'","'",$Var);
$Var = str_replace('"',""",$Var);
return $Var;
}
Hope this helps someone else.
- Jonathan