string escapeSimple (
string $str
)
Escape a string according to the current DBMS's standards.
$str
the input to be escaped
string - the escaped string
This function can not be called statically.
Function available since: Release 1.6.0
Using escapeSimple()
<?php
// Once you have a valid DB object named $db...
$name = "all's well";
$sql = "SELECT * FROM clients WHERE name = '"
. $db->escapeSimple($name) . "'";
$res =& $db->query($sql);
?>