dsfdsfds521521 2013-09-27 12:06
浏览 66
已采纳

如何以最安全的方式从MYSQL中的textarea插入文本内容[关闭]

I am simply inserting the text that you write in the textarea in mySQL without using any extra method to protect my site... Actually i just made a test wrote the html code that creates a input textbox to the textarea and saved it into mysql, which prints me the component on the page...

How can i make it write secure content on textarea that does not allow you to write html tags or smth, I just wanna increase the security of my site.

Thanks

  • 写回答

2条回答 默认 最新

  • duanlei4759 2013-09-27 12:10
    关注

    if $textarea contains your textarea value,you can do $db_value = mysql_real_escape_string(strip_tags(trim($textarea))) and insert $db_value to the database.

    strip_tags strips the text of html tags and mysql_real_escape_string encodes special characters and makes it safe to insert into a database...

    for mysql_real_escape_string: check http://php.net/manual/en/function.mysql-real-escape-string.php

    for strip_tags check: http://www.php.net/manual/en/function.strip-tags.php

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论
查看更多回答(1条)

报告相同问题?

悬赏问题

  • ¥15 微信会员卡接入微信支付商户号收款
  • ¥15 如何获取烟草零售终端数据
  • ¥15 数学建模招标中位数问题
  • ¥15 phython路径名过长报错 不知道什么问题
  • ¥15 深度学习中模型转换该怎么实现
  • ¥15 HLs设计手写数字识别程序编译通不过
  • ¥15 Stata外部命令安装问题求帮助!
  • ¥15 从键盘随机输入A-H中的一串字符串,用七段数码管方法进行绘制。提交代码及运行截图。
  • ¥15 TYPCE母转母,插入认方向
  • ¥15 如何用python向钉钉机器人发送可以放大的图片?