dongpa6867 2014-01-14 11:46
浏览 40
已采纳

PHP - MySQLi准备语句

$name = $_GET['user'];
if(isset($_GET['user']) && strlen($_GET['user'])>0) {
    $mysqli = new mysqli($dbhost, $dbuser, $dbpass, $db);
    $stmt = $mysqli->prepare("SELECT username FROM users WHERE username=?");
    $stmt->bind_param('s', $name);
    $stmt->execute();
    while($stmt->fetch()) {
        if($stmt->num_rows == 0) {
            header("Location: home?errormsg=notfound");
            exit();
        }
    }
    $stmt->store_result();
    $stmt->close();
}
$mysqli->close();

So, the above code checks if $_GET['name'] exists in the database, and if it doesn't, to redirect to home?errormsg=notfound but it redirects the usernames which exists in the database to the link 'home?errormsg=notfound' as well. Can you suggest a way to solve this problem?

  • 写回答

2条回答 默认 最新

  • dspvin19712 2014-01-14 11:59
    关注

    You have to call $stmt->store_result() before $stmt->num_rows.

    And your $stmt->fetch() is not necessary, because you don't use the selected data.

    If you call store_result() after num_rows it won't work.

    Part of comment from manual page:

    If you do not use mysqli_stmt_store_result( ), and immediatley call this function after executing a prepared statement, this function will usually return 0 as it has no way to know how many rows are in the result set as the result set is not saved in memory yet.

    So your code should look like this:

    $name = $_GET['user'];
    if(isset($_GET['user']) && strlen($_GET['user'])>0) {
        $mysqli = new mysqli($dbhost, $dbuser, $dbpass, $db);
        $stmt = $mysqli->prepare("SELECT username FROM users WHERE username=?");
        $stmt->bind_param('s', $name);
        $stmt->execute();
        $stmt->store_result();
        if($stmt->num_rows == 0) {
            header("Location: home?errormsg=notfound");
            exit();
        }
        $stmt->close();
    }
    $mysqli->close();
    
    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论
查看更多回答(1条)

报告相同问题?

悬赏问题

  • ¥15 素材场景中光线烘焙后灯光失效
  • ¥15 请教一下各位,为什么我这个没有实现模拟点击
  • ¥15 执行 virtuoso 命令后,界面没有,cadence 启动不起来
  • ¥50 comfyui下连接animatediff节点生成视频质量非常差的原因
  • ¥20 有关区间dp的问题求解
  • ¥15 多电路系统共用电源的串扰问题
  • ¥15 slam rangenet++配置
  • ¥15 有没有研究水声通信方面的帮我改俩matlab代码
  • ¥15 ubuntu子系统密码忘记
  • ¥15 保护模式-系统加载-段寄存器