Jump to content

Recommended Posts

Posted

Greetings,

 

I am trying to reconcile the following reality:

 

$query = "INSERT INTO mytable VALUES('', 'A user's input. It contains one or more apostrophes or quote marks.')"; 

 

This, clearly, is a problem and I don't know how to reconcile it.

 

This forum clearly has reconciled it. Consider my apostrophes and quote marks: ''' "" "' ' '"!!

 

Thanks!

Posted

Found the fix:

 

$myvalue = mysql_real_escape_string(A user's input. It contains one or more apostrophes or quote marks.);
$query = "INSERT INTO mytable VALUES('', '$myvalue')"; 

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...