douzhi2988 2013-09-16 02:01
浏览 90
已采纳

BindValue在引号之间的sql语句中

Im trying to execute something like this

$SQL = "INSERT into cb_sent_alerts(user_id,message) 
    Select id, ' :message ' from story1";


$stmt->bindValue(':message', $_POST['message']);

But that just sends :message to the database, not the values of $_POST['message']; What can i do?

EDIT: very sorry should have specified, :message is not a column in cb_sent_alerts, rather i want the message there as a string.

  • 写回答

1条回答 默认 最新

  • duannaxin9975 2013-09-16 02:18
    关注

    Though it's never mentioned in the doc explicitly, you can work with placeholders in SELECT part of INSERT ... SELECT query the same way as with any other type of query. So this:

    INSERT INTO cb_sent_alerts(user_id,message) 
        SELECT id, :message FROM story1
    

    ... end up with the right value (a string) if bound up by bindValue(':message', $_POST('message') call.

    Note that placeholders cannot be used for the column and table names, so the thing you were afraid of is just not possible. )

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 BC260Y用MQTT向阿里云发布主题消息一直错误
  • ¥20 求个正点原子stm32f407开发版的贪吃蛇游戏
  • ¥15 划分vlan后,链路不通了?
  • ¥20 求各位懂行的人,注册表能不能看到usb使用得具体信息,干了什么,传输了什么数据
  • ¥15 Vue3 大型图片数据拖动排序
  • ¥15 Centos / PETGEM
  • ¥15 划分vlan后不通了
  • ¥20 用雷电模拟器安装百达屋apk一直闪退
  • ¥15 算能科技20240506咨询(拒绝大模型回答)
  • ¥15 自适应 AR 模型 参数估计Matlab程序