(PHP 5, PHP 7)
mysqli::real_escape_string -- mysqli::escape_string -- mysqli_real_escape_string — 锟斤拷锟捷碉拷前锟斤拷锟接碉拷锟街凤拷锟斤拷锟斤拷锟斤拷锟斤拷 SQL 锟斤拷锟斤拷械锟斤拷锟斤拷锟斤拷址锟斤拷锟斤拷锟阶拷锟�
锟斤拷锟斤拷锟斤拷锟斤拷锟�
$escapestr
) : string锟斤拷锟教伙拷锟斤拷锟�
锟剿猴拷锟斤拷锟斤拷锟斤拷锟斤拷锟街凤拷锟斤拷锟叫碉拷锟斤拷锟斤拷锟街凤拷锟斤拷锟斤拷转锟藉, 锟斤拷使锟斤拷锟斤拷锟斤拷址锟斤拷锟斤拷锟揭伙拷锟斤拷戏锟斤拷锟� SQL 锟斤拷洹� 锟斤拷锟斤拷锟斤拷址锟斤拷锟斤拷锟斤拷锟捷碉拷前锟斤拷锟接碉拷锟街凤拷锟斤拷锟斤拷锟斤拷转锟藉,锟矫碉拷一锟斤拷锟斤拷锟斤拷锟侥合凤拷锟斤拷 SQL 锟斤拷洹�
锟节碉拷锟斤拷 mysqli_real_escape_string() 锟斤拷锟斤拷之前锟斤拷 锟斤拷锟斤拷锟斤拷通锟斤拷锟斤拷锟斤拷 mysqli_set_charset() 锟斤拷锟斤拷锟斤拷锟斤拷锟斤拷 MySQL 锟斤拷锟斤拷锟斤拷锟斤拷锟斤拷锟斤拷锟街凤拷锟斤拷锟斤拷 锟斤拷锟斤拷锟斤拷息锟斤拷慰锟� 锟街凤拷锟斤拷锟斤拷
link
锟斤拷锟皆癸拷锟教伙拷锟斤拷式锟斤拷锟斤拷mysqli_connect() 锟斤拷 mysqli_init() 锟斤拷锟截碉拷锟斤拷锟接憋拷识锟斤拷
escapestr
锟斤拷要锟斤拷锟斤拷转锟斤拷锟斤拷址锟斤拷锟斤拷锟�
锟结被锟斤拷锟斤拷转锟斤拷锟斤拷址锟斤拷锟斤拷锟斤拷锟� NUL 锟斤拷ASCII 0锟斤拷锟斤拷\n锟斤拷\r锟斤拷\锟斤拷'锟斤拷" 锟斤拷 Control-Z.
转锟斤拷锟斤拷锟街凤拷锟斤拷锟斤拷
锟斤拷锟斤拷效锟斤拷锟斤拷锟斤拷锟较碉拷锟矫此猴拷锟斤拷锟结返锟斤拷
NULL
锟斤拷锟斤拷锟斤拷一锟斤拷 E_WARNING
锟斤拷锟斤拷拇锟斤拷锟�
Example #1 mysqli::real_escape_string() 锟斤拷锟斤拷
锟斤拷锟斤拷锟斤拷锟斤拷锟�
<?php
$mysqli = new mysqli("localhost", "my_user", "my_password", "world");
/* 锟斤拷锟斤拷锟斤拷锟� */
if (mysqli_connect_errno()) {
printf("Connect failed: %s\n", mysqli_connect_error());
exit();
}
$mysqli->query("CREATE TEMPORARY TABLE myCity LIKE City");
$city = "'s Hertogenbosch";
/* 锟斤拷锟斤拷未锟斤拷 $city 锟斤拷锟斤拷转锟藉,锟剿次诧拷询锟斤拷失锟斤拷 */
if (!$mysqli->query("INSERT into myCity (Name) VALUES ('$city')")) {
printf("Error: %s\n", $mysqli->sqlstate);
}
$city = $mysqli->real_escape_string($city);
/* 锟斤拷 $city 锟斤拷锟斤拷转锟斤拷之锟襟,诧拷询锟斤拷锟斤拷锟斤拷锟斤拷执锟斤拷 */
if ($mysqli->query("INSERT into myCity (Name) VALUES ('$city')")) {
printf("%d Row inserted.\n", $mysqli->affected_rows);
}
$mysqli->close();
?>
锟斤拷锟教伙拷锟斤拷锟�
<?php
$link = mysqli_connect("localhost", "my_user", "my_password", "world");
/* 锟斤拷锟斤拷锟斤拷锟� */
if (mysqli_connect_errno()) {
printf("Connect failed: %s\n", mysqli_connect_error());
exit();
}
mysqli_query($link, "CREATE TEMPORARY TABLE myCity LIKE City");
$city = "'s Hertogenbosch";
/* 锟斤拷锟斤拷未锟斤拷 $city 锟斤拷锟斤拷转锟藉,锟剿次诧拷询锟斤拷失锟斤拷 */
if (!mysqli_query($link, "INSERT into myCity (Name) VALUES ('$city')")) {
printf("Error: %s\n", mysqli_sqlstate($link));
}
$city = mysqli_real_escape_string($link, $city);
/* 锟斤拷 $city 锟斤拷锟斤拷转锟斤拷之锟襟,诧拷询锟斤拷锟斤拷锟斤拷锟斤拷执锟斤拷 */
if (mysqli_query($link, "INSERT into myCity (Name) VALUES ('$city')")) {
printf("%d Row inserted.\n", mysqli_affected_rows($link));
}
mysqli_close($link);
?>
锟斤拷锟斤拷锟斤拷锟教伙拷锟斤拷锟斤拷锟�
Error: 42000 1 Row inserted.
Note:
锟斤拷锟斤拷锟街帮拷锟斤拷锟绞癸拷锟� mysql_real_escape_string() 锟斤拷锟斤拷锟斤拷转锟斤拷 SQL 锟斤拷锟侥o拷 锟斤拷么锟斤拷要注锟斤拷锟斤拷锟� mysqli_real_escape_string() 锟斤拷 mysql_real_escape_string() 锟斤拷锟斤拷锟斤拷锟斤拷锟侥诧拷锟斤拷顺锟斤拷同锟斤拷 mysqli_real_escape_string() 锟叫o拷
link
锟角碉拷一锟斤拷锟斤拷锟斤拷锟斤拷 锟斤拷锟斤拷 mysql_real_escape_string() 锟斤拷锟斤拷锟叫o拷要转锟斤拷锟斤拷址锟斤拷锟斤拷堑锟揭伙拷锟斤拷锟斤拷锟斤拷锟�