Jump to content

Recommended Posts

Posted

Greetings,

 

I am trying to reconcile the following reality:

 

$query = "INSERT INTO mytable VALUES('', 'A user's input. It contains one or more apostrophes or quote marks.')"; 

 

This, clearly, is a problem and I don't know how to reconcile it.

 

This forum clearly has reconciled it. Consider my apostrophes and quote marks: ''' "" "' ' '"!!

 

Thanks!

Posted

Found the fix:

 

$myvalue = mysql_real_escape_string(A user's input. It contains one or more apostrophes or quote marks.);
$query = "INSERT INTO mytable VALUES('', '$myvalue')"; 

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...
×
×
  • Create New...