drci47425 2012-09-28 09:41 采纳率: 100%
浏览 66
已采纳

PDO插入语句和逗号分隔符

I have:

INSERT INTO post(title,message) VALUES (:title,:message) 

where :message value has some random text with symbols (including comma).

As the comma symbol is the separator between components of the statement:

How can i escape :message value to keep its included commas in the string context and not be interpreted as the separator?

  • 写回答

2条回答 默认 最新

  • dpvhv66448 2012-09-28 09:44
    关注

    You don't need to. The whole point of using prepared statements, as you are with PDO, is that the structure of the query is sent separately from the data. This means that characters in the data are never confused for parts of the structure of the query.

    You've done all you need to do to make the query safe in this regard.

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论
查看更多回答(1条)

报告相同问题?

悬赏问题

  • ¥15 求daily translation(DT)偏差订正方法的代码
  • ¥15 js调用html页面需要隐藏某个按钮
  • ¥15 ads仿真结果在圆图上是怎么读数的
  • ¥20 Cotex M3的调试和程序执行方式是什么样的?
  • ¥20 java项目连接sqlserver时报ssl相关错误
  • ¥15 一道python难题3
  • ¥15 牛顿斯科特系数表表示
  • ¥15 arduino 步进电机
  • ¥20 程序进入HardFault_Handler
  • ¥15 关于#python#的问题:自动化测试