Perl-Sensitive Sunglasses | |
PerlMonks |
Re^4: DBH Insert of Binary Databy Joost (Canon) |
on Mar 18, 2005 at 22:28 UTC ( [id://440817]=note: print w/replies, xml ) | Need Help?? |
I mostly agree, but AFAIK, the $dbh->quote() method is (or should be) implemented by the specific DBD driver and should always escape correctly. Now, there might be situations or database where you can't just insert a quoted string in a BLOB, but SQL injection should not be possible with a $dbh->quote()d string.
In Section
Seekers of Perl Wisdom
|
|