duanji1043 2010-08-20 10:09
浏览 190

在HTML页面中显示纯PHP代码

And I'm talking (especially) forums here - [PHP]code here[/PHP] - style. Some forums escape double quotes or other "dangerous characters" and others don't.

What is the best method? What are you guys using? Can it be done without the fear of code injection?

Edit: Who said anything about reinventing the wheel?

  • 写回答

4条回答 默认 最新

  • doumaikuang4202 2010-08-20 10:12
    关注

    When PHP echo or print text, it never executes it. That only happens with eval. This means that if you did this:

    echo '<?php ... ?>';
    

    it would carry through to the page output and not be parsed or executed.

    This means that all you need to do is escape the usual characters (<, >, &, etc.) and you should generally be safe.

    评论

报告相同问题?

悬赏问题

  • ¥20 我想使用一些网络协议或者部分协议也行,主要想实现类似于traceroute的一定步长内的路由拓扑功能
  • ¥30 深度学习,前后端连接
  • ¥15 孟德尔随机化结果不一致
  • ¥15 apm2.8飞控罗盘bad health,加速度计校准失败
  • ¥15 求解O-S方程的特征值问题给出边界层布拉休斯平行流的中性曲线
  • ¥15 谁有desed数据集呀
  • ¥20 手写数字识别运行c仿真时,程序报错错误代码sim211-100
  • ¥15 关于#hadoop#的问题
  • ¥15 (标签-Python|关键词-socket)
  • ¥15 keil里为什么main.c定义的函数在it.c调用不了