Jump to content

post values gets inserted with each page loads


PHP_CHILD

Recommended Posts

so i am doing this very basic shoutbox...Where the page refreshes, the previous data of post gets inserted to the database... How do i stop this? Thanks..


 $a=isset($_POST['name']) && $_POST['name'];
 $b=isset($_POST['message']) && $_POST['message'];
 $value55=mysql_real_escape_string($_POST[name]);
 $value56=mysql_real_escape_string($_POST[message]);

$sql="INSERT INTO shout(name,post) 
   VALUES
   ('$value55','$value56')";

 $c=mysql_query($sql,$con) or die(mysql_error());

 if($a&&$b&&$c)  {
   $query6="SELECT `name`, `post` FROM `shout` ";
   $result6=mysql_query($query6) or die(mysql_error());

   while($row5=mysql_fetch_array($result6))
   {
   $a=stripslashes($row5['name']);
   $b=stripslashes($row5['post']);
   echo "Name".$a."<br>";
   echo "message".$b."<br>";
   }
   }

<?PHP

//### Start the session
session_start();

//### MySQL credentials
$DBhost = '127.0.0.1';
$DBuser = 'username';
$DBpass = 'password';
$DBname = 'database name';

//### Connect to the database
$connect = mysql_connect($DBhost,$DBuser,$DBpass);
mysql_select_db($DBname,$connect);

//### If the form is submitted, process data
if($_SERVER['REQUEST_METHOD'] == 'POST') {

//### Assign data
$name = mysql_real_escape_string($_POST['name']);
$message = mysql_real_escape_string($_POST['message']);

//### Validation
if(!$name) {
 echo 'Please enter your name';
} else if(!$message) {
 echo 'Please enter a message.';
} else {

 $addShoutQuery = "INSERT INTO `shout` (`name`, `post`) VALUES ('{$name}', '{$message}')";
 $addShout	 = mysql_query($addShoutQuery);

 if(!mysql_affected_rows()) {
 echo 'Unable to add message';
 } else {
 $_SESSION['message'] = 'Message has been added';
 header('Location: ?');
 exit;
 } //### End query check
} //### End validation
} //### End post process

//### Retrieve shouts from database
$selectShoutsQuery = "SELECT `name`, `post` FROM `shout` ORDER BY `id` DESC";
$selectShouts	 = mysql_query($selectShoutsQuery) or die(mysql_error());

if(!mysql_num_rows($selectShouts)) {
echo 'No messages posted.';
} else {

$shoutBox = '';

//### Display messages from database
while($row = mysql_fetch_assoc($selectShouts)) {

 $shoutBox .= "{$row['name']}: {$row['post']} <br>".PHP_EOL;

}
}

if(isSet($_SESSION['message'])) {
echo $_SESSION['message'] .'<br>'.PHP_EOL;
unset($_SESSION['message']);
}
?>
<form method="POST" action="index.php">
Name: <input type="text" name="name" value=""> <br>
Message: <input type="text" name="message" value=""> <br>
<input type="submit" value="Post Message">
</form>

<br>

<?PHP echo $shoutBox;?>

 

Try that out.

 

Should probably look into MySQLi also, instead of MySQL, not much to change in the code.

<?PHP

//### Start the session
session_start();

//### MySQL credentials
$DBhost = '127.0.0.1';
$DBuser = 'username';
$DBpass = 'password';
$DBname = 'database name';

//### Connect to the database
$connect = mysql_connect($DBhost,$DBuser,$DBpass);
mysql_select_db($DBname,$connect);

//### If the form is submitted, process data
if($_SERVER['REQUEST_METHOD'] == 'POST') {

//### Assign data
$name = mysql_real_escape_string($_POST['name']);
$message = mysql_real_escape_string($_POST['message']);

//### Validation
if(!$name) {
 echo 'Please enter your name';
} else if(!$message) {
 echo 'Please enter a message.';
} else {

 $addShoutQuery = "INSERT INTO `shout` (`name`, `post`) VALUES ('{$name}', '{$message}')";
 $addShout	 = mysql_query($addShoutQuery);

 if(!mysql_affected_rows()) {
 echo 'Unable to add message';
 } else {
 $_SESSION['message'] = 'Message has been added';
 header('Location: ?');
 exit;
 } //### End query check
} //### End validation
} //### End post process

//### Retrieve shouts from database
$selectShoutsQuery = "SELECT `name`, `post` FROM `shout` ORDER BY `id` DESC";
$selectShouts	 = mysql_query($selectShoutsQuery) or die(mysql_error());

if(!mysql_num_rows($selectShouts)) {
echo 'No messages posted.';
} else {

$shoutBox = '';

//### Display messages from database
while($row = mysql_fetch_assoc($selectShouts)) {

 $shoutBox .= "{$row['name']}: {$row['post']} <br>".PHP_EOL;

}
}

if(isSet($_SESSION['message'])) {
echo $_SESSION['message'] .'<br>'.PHP_EOL;
unset($_SESSION['message']);
}
?>
<form method="POST" action="index.php">
Name: <input type="text" name="name" value=""> <br>
Message: <input type="text" name="message" value=""> <br>
<input type="submit" value="Post Message">
</form>

<br>

<?PHP echo $shoutBox;?>

 

Try that out.

 

Should probably look into MySQLi also, instead of MySQL, not much to change in the code.

thank u.. will try

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.