防止SQL注入的若干笔记

来源:互联网 发布:盐枪 淘宝 编辑:程序博客网 时间:2024/06/07 04:08

利用 mysqli


$mysqli = new mysqli('localhost', 'my_user', 'my_password', 'world');$stmt = $mysqli->prepare("INSERT INTO CountryLanguage VALUES (?, ?, ?, ?)");$code = 'DEU';$language = 'Bavarian';$official = "F";$percent = 11.2;$stmt->bind_param('sssd', $code, $language, $official, $percent);

原创粉丝点击