Beefy Boxes and Bandwidth Generously Provided by pair Networks
No such thing as a small change

Re^4: Cookie login (pseudocode)

by Spidy (Chaplain)
on Feb 20, 2008 at 15:59 UTC ( #669031=note: print w/replies, xml ) Need Help??

in reply to Re^3: Cookie login (pseudocode)
in thread Cookie login (pseudocode)

Akoya, the DBI module will sanitize the parameters you pass in to placeholders in a prepared statement:
my $sth = $dbh->prepare("SELECT * FROM foo WHERE bar = ?"); $sth->execute("my 'scary variable here';");
Whereas if you just did it using $dbh->do():
$dbh->do("SELECT * FROM foo WHERE bar = " . "my scary 'variable here'; +");
You would have a problem, because the ' and ; characters would not have been escaped - and would therefore do Bad Things™ to your database.

Log In?

What's my password?
Create A New User
Node Status?
node history
Node Type: note [id://669031]
NodeReaper slips on a banana skin

How do I use this? | Other CB clients
Other Users?
Others contemplating the Monastery: (3)
As of 2017-03-26 19:21 GMT
Find Nodes?
    Voting Booth?
    Should Pluto Get Its Planethood Back?

    Results (315 votes). Check out past polls.