note 50512 deleted from function.pg-escape-string by googleguy
| From: | googleguy@php.net | Date: | Tue, 22 Oct 2013 10:15:54 +0000 |
| Subject: | note 50512 deleted from function.pg-escape-string by googleguy | ||
| References: | 1 | Groups: | php.notes |
| Request: | Send a blank email to php-notes+get-196952@lists.php.net to get a copy of this message | ||
Note Submitter: tsharek at o2 dot pl
----
IMO the stripslashes in this case is not very usefull. Because pg_escape_string change ' into
'' (double ' - not "). I use in add to database this:
pg_escape_string(stripslashes($_GET['var'])) and is in 100% safe (i hope).
If I use addslashes in this case that well be lost space in database (\''' - this is
3 bytes)
ps. sorry for my english:)