note 42933 added to function.mysql-escape-string

From: Date: Fri, 04 Jun 2004 06:08:16 +0000
Subject: note 42933 added to function.mysql-escape-string
Groups: php.notes 
Request: Send a blank email to php-notes+get-70658@lists.php.net to get a copy of this message
When deleting in this mannor, always use a LIMIT statement. $sql = "delete from table where id=".intval($in)." limit 1"; Just in case something slips by, this will limit any damage caused by it. Always play it safe. ---- Manual Page -- http://www.php.net/manual/en/function.mysql-escape-string.php Edit -- http://master.php.net/manage/user-notes.php?action=edit+42933 Delete -- http://master.php.net/manage/user-notes.php?action=delete+42933&report=yes Reject -- http://master.php.net/manage/user-notes.php?action=reject+42933&report=yes Search -- http://master.php.net/manage/user-notes.php

« previous php.notes (#70658) next »