5-6節(jié)防止sql注入一節(jié)的mysql_escape_string怎么用mysqli代替
現(xiàn)在的版本已經(jīng)不用mysql了,但是防止sql注入的這一節(jié)的mysql_escape_string用Mysqli應(yīng)該怎么寫(xiě),我知道應(yīng)該用Mysqli_escape_string或者是mysqli_real_escape_string,,但是括號(hào)里邊不知道怎么弄
現(xiàn)在的版本已經(jīng)不用mysql了,但是防止sql注入的這一節(jié)的mysql_escape_string用Mysqli應(yīng)該怎么寫(xiě),我知道應(yīng)該用Mysqli_escape_string或者是mysqli_real_escape_string,,但是括號(hào)里邊不知道怎么弄
舉報(bào)
2017-06-10
$username = $_POST['username'];
$username = $句柄->escape_string(string $username);