note 61943 deleted from function.mysql-real-escape-string by betz
| From: | betz@php.net | Date: | Wed, 15 Feb 2006 22:06:07 +0000 |
| Subject: | note 61943 deleted from function.mysql-real-escape-string by betz | ||
| References: | 1 | Groups: | php.notes |
| Request: | Send a blank email to php-notes+get-103808@lists.php.net to get a copy of this message | ||
Note Submitter: datacruser88 at yahoo dot com
----
it's a shame that it doesn't escape all strings that can affect a search like
'_' if you do a search say
select * from userdb where email like 'david_%';
it will select all strings with 'david' at the beginning and ignore the underscore, but if
you do
select * from userdb where email like 'david\\_%' it's closer to what you are looking
for and will find all email address that begin 'david_'
I know this is true with mysql 4.0.1, not sure about other versions.
There must be other characters like that. No?