note 40689 added to language.variables.predefined
| From: | phpnet at onsetcorps dot net | Date: | Thu, 11 Mar 2004 14:10:37 +0000 |
| Subject: | note 40689 added to language.variables.predefined | ||
| Groups: | php.notes | ||
| Request: | Send a blank email to php-notes+get-66634@lists.php.net to get a copy of this message | ||
folks, some of you do not seem to realize that extracting all you _GET/_POST/_COOKIE arrays to the
global scope defeats the purpose of having register_globals turned off. (ie debabratak at softhome
dot net above) The point is to make sure you know where your variables are coming from, espeically
your $has_auth variables for example. Good coding practice dictates that you now put
$_POST['foo'] where you used to just willy-nilly put $foo (assuming $foo came from a
POST). Get in the habit of it and save yourself a headache. And if your host can't keep the PHP
on the server up to date, get a new host - there are too many bugs and security holes to even
mention in older versions.
----
Manual Page -- http://www.php.net/manual/en/language.variables.predefined.php
Edit -- http://master.php.net/manage/user-notes.php?action=edit+40689
Delete -- http://master.php.net/manage/user-notes.php?action=delete+40689&report=yes
Reject -- http://master.php.net/manage/user-notes.php?action=reject+40689&report=yes
Search -- http://master.php.net/manage/user-notes.php