"be consistent" | |
PerlMonks |
Re: Inserting into SQLby beebware (Pilgrim) |
on Feb 13, 2002 at 17:13 UTC ( [id://145209]=note: print w/replies, xml ) | Need Help?? |
Even though you are using placeholders, it's still a good idea to use a regexp to remove anything you don't want. $var1=~s/[^A-z0-9, \.]//g; works for me, but a) the little regexp can probably be better written and b) only allows set characters (upper and lower case letters, numbers, commas, spaces and full stops). Just an added layer of security.
In Section
Seekers of Perl Wisdom
|
|