<?xml version="1.0" encoding="windows-1252"?>
<node id="875170" title="Re: Wrong SQL Syntax?" created="2010-12-03 07:48:44" updated="2010-12-03 07:48:44">
<type id="11">
note</type>
<author id="483556">
McDarren</author>
<data>
<field name="doctext">
Use [http://search.cpan.org/~timb/DBI-1.615/DBI.pm#Placeholders_and_Bind_Values|Placeholders]
&lt;code&gt;
my $sth = $dbh-&gt;prepare("SELECT userid, login_name, realname FROM profiles WHERE login_name = ?");

# and then

$sth-&gt;execute($user_login_name);
&lt;/code&gt;

Cheers,&lt;br&gt;
Darren</field>
<field name="root_node">
875162</field>
<field name="parent_node">
875162</field>
</data>
</node>
