Jump to content

[SOLVED] String with ' not entering to the dataBASE!!!!


chanchelkumar

Recommended Posts

Hi Friends,

 

Am working on a WYSIWYG editor, and while entering some data's containing ' it is not entering into the data base giving me this error message...

 

You have an error in your SQL syntax; check the manual that

corresponds to your MySQL server version for the right syntax to use near 's

and would be able to supply a smooth professional service for workers on

work' at line 1"

 

In my SQL table the field type is BLOB I changed it in to text but the problem exists!!!!

 

My charset is UTF-8!!!

Is this the problem behind it????

 

what can i do??

 

Please help me!!!!

You need to escape the user input. If you have an apostrophe like that, it opens you up to SQL injection if you do not handle the data properly. You need to run the data through mysql_real_escape_string() before you put it into the database.

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.