This article introduces an example of performing mysql parameterized query in PHP. Friends in need can refer to it.
Share an example of php mysql parameterized query. Code: <?php //例一 $query = sprintf("SELECT * FROM Users where UserName='%s' and Password='%s'", mysql_real_escape_string($Username), mysql_real_escape_string($Password)); mysql_query($query); //例二 $db = new mysqli("localhost", "user", "pass", "database"); $stmt = $mysqli -> prepare("SELECT priv FROM testUsers WHERE username=? AND password=?"); $stmt -> bind_param("ss", $user, $pass); $stmt -> execute(); ?> Copy after login |