Bug #65290 [NEW]: The doc for addslashes should not describe database escaping as the use case

From: Date: Thu, 18 Jul 2013 16:01:12 +0000
Subject: Bug #65290 [NEW]: The doc for addslashes should not describe database escaping as the use case
Groups: php.doc.bugs 
Request: Send a blank email to doc-bugs+get-10091@lists.php.net to get a copy of this message
From: stof at notk dot org Operating system: PHP version: Irrelevant Package: Documentation problem Bug Type: Bug Bug description:The doc for addslashes should not describe database escaping as the use case Description: ------------ Using addslashes to escape the input for the database is a really bad idea. But the doc of the function still describe it as the use case (and then warns that there is better ways to do it). I think it would be better to avoid mentionning the database escaping for the use case of the function, to avoid teaching unsecure practices. Lazy people would stop reading before the end of the description and only see the suggestion of using it for escaping. -- Edit bug report at https://bugs.php.net/bug.php?id=65290&edit=1 -- Try a snapshot (PHP 5.4): https://bugs.php.net/fix.php?id=65290&r=trysnapshot54 Try a snapshot (PHP 5.3): https://bugs.php.net/fix.php?id=65290&r=trysnapshot53 Try a snapshot (trunk): https://bugs.php.net/fix.php?id=65290&r=trysnapshottrunk Fixed in SVN: https://bugs.php.net/fix.php?id=65290&r=fixed Fixed in release: https://bugs.php.net/fix.php?id=65290&r=alreadyfixed Need backtrace: https://bugs.php.net/fix.php?id=65290&r=needtrace Need Reproduce Script: https://bugs.php.net/fix.php?id=65290&r=needscript Try newer version: https://bugs.php.net/fix.php?id=65290&r=oldversion Not developer issue: https://bugs.php.net/fix.php?id=65290&r=support Expected behavior: https://bugs.php.net/fix.php?id=65290&r=notwrong Not enough info: https://bugs.php.net/fix.php?id=65290&r=notenoughinfo Submitted twice: https://bugs.php.net/fix.php?id=65290&r=submittedtwice register_globals: https://bugs.php.net/fix.php?id=65290&r=globals PHP 4 support discontinued: https://bugs.php.net/fix.php?id=65290&r=php4 Daylight Savings: https://bugs.php.net/fix.php?id=65290&r=dst IIS Stability: https://bugs.php.net/fix.php?id=65290&r=isapi Install GNU Sed: https://bugs.php.net/fix.php?id=65290&r=gnused Floating point limitations: https://bugs.php.net/fix.php?id=65290&r=float No Zend Extensions: https://bugs.php.net/fix.php?id=65290&r=nozend MySQL Configuration Error: https://bugs.php.net/fix.php?id=65290&r=mysqlcfg

« previous php.doc.bugs (#10091) next »