0
我知道這已經被問過,但對我來說,我有點爲難,我需要把我的佔位符:凡把佔位WPDB中,準備
$prepared = $wpdb->prepare(
"
SELECT *
FROM tarieven
WHERE bestemming
= '" . trim($_POST['destination']) . "'
",
'value', 'another value'
);
$results = $wpdb->get_results($prepared);
如果你把價值觀,bestemning = ___ – clearshot66
本帖](https://stackoverflow.com/questions/60174/how-can-i-prevent-sql-injection-in-php)有一些很好的例子。 –