Jump to content

User Input, htmlentities, htmlspecialchars, fckeditor


WorldDrknss

Recommended Posts

there are many threads that dicuss htmlentities vs htmlspecialchars. I know what each one does but would like to gather some people opinions on which should used it cases.

 

Would you prefer htmlentities vs htmlspecialchars when accepting user input such as textareas that support bbcode via javascript, or inputs in general.

 

Would you prefer to use htmlentities vs htmlspecialchars when using fckeditor. Fckeditor is only used by administrators.

 

My site will using a lot of input boxes for photo gallerys, blogs and much more so that is the reason why I would like to get some ideas. htmlentities/htmlspecialchars will be tied with mysql_real_escape_string along with other security checks.

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.