Jump to content

[SOLVED] Is HTML entities the best safety measure?


galvin

Recommended Posts

Any chance you can give me a very basic example of differing contexts and a brief explanation of why one is better in one scenario and the other is better in the other scenario?.

 

escapeshellarg

escapeshellcmd

htmlentities

mysql_real_escape_string

Prepared statements (PDO)

Prepared statements (MySQLi)

mysqli_real_escape_string

db2_escape_string

sqlite_escape_string

 

I'm sure you can add on to the list yourself...

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.