【发布时间】:2017-03-11 22:14:07
【问题描述】:
$stmt = $conn->prepare("INSERT INTO chatbox (username, message)
VALUES (:username, :message)");
$stmt->bindParam(':username', $username);
$stmt->bindParam(':message', $message);
$username = $_POST['username'];
$message = $_POST['message'];
$stmt->execute();
?>
在这种情况下我应该把 htmlspecialchars() 放在哪里,请帮帮我?
【问题讨论】: