DEV Community

Discussion on: How i prevent SQL Injection in my PHP code

Collapse
 
vishalraj82 profile image
Vishal Raj

@mjprogramation For those who don't use PDO (very unfortunate) can use msyqli_real_escape_string

Collapse
 
butalin profile image
Anass Boutaline

Mysqli also has prepare methode, they can do something like $conn->prepare("my prepared query?")