开发者

real escape string whitelist

开发者 https://www.devze.com 2023-01-02 01:35 出处:网络
Whether text of paragraph is input and <br> tag will be remove aft开发者_开发技巧er real_escape_string, how do I whitelist the break tag?use strip_tag instead.The second parameter is an array of

Whether text of paragraph is input and <br> tag will be remove aft开发者_开发技巧er real_escape_string, how do I whitelist the break tag?


use strip_tag instead. The second parameter is an array of allowed tags

php.net/strip_tags


I manage to use alternative method, nl2br then mysql_real_escape_string and finally use str_replace to allow <br> tag


Is real_escape_string() a user defined function or are you referring to mysql_real_escape_string?

Because mysql_real_escape_string() will escape " to \" but will leave <br> alone.

0

精彩评论

暂无评论...
验证码 换一张
取 消