Re: addslahes and magic quote woes
| From: | 1LT John W. Holmes | Date: | Wed, 03 Jul 2002 14:33:19 +0000 |
| Subject: | Re: addslahes and magic quote woes | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-105196@lists.php.net to get a copy of this message | ||
Just pick one, and use only one. If you have magic_quotes ON, then you don't
need addslashes, etc.
---John Holmes...
----- Original Message -----
From: "Jean-Christian Imbeault" <jean_christian@myrealbox.com>
To: <php-general@lists.php.net>
Sent: Wednesday, July 03, 2002 9:40 AM
Subject: [PHP] addslahes and magic quote woes
> I am trying to make my PHP safe against malicious data user inputs.
> Reading up on this most people suggest using addslashes(), magic_quotes
> on and other things like mysql_escape_string();
>
> But I have been running into the problem that I mess up the user's input
> because I use more then one of these functions in succession on the data.
>
> Is there any way to prevent the "re-escaping"/"re-slashing" of data that
> has already been escaped or slashed?
>
> Jc
>
>
> --
> PHP General Mailing List (http://www.php.net/)
> To unsubscribe, visit: http://www.php.net/unsub.php
>