List:MySQL and Java« Previous MessageNext Message »
From:Ambrose Li Date:April 30 1999 1:36pm
Subject:Re: insert variables
View as plain text  
On Fri, Apr 30, 1999 at 08:59:06AM +0500, RITESH BISWAS wrote:
> executeUpdate("insert into table values ('"+value1+"')");
> 
> it uses + to concatenate 2 strings...even the variable.

What if value1 has at least one ' in it? Wouldn't that generate
a runtime error?

Thread
insert variablesOana Radulescu29 Apr
  • RE: insert variablesMark Matthews29 Apr
  • Re: insert variablesRITESH BISWAS30 Apr
    • Re: insert variablesAmbrose Li30 Apr
      • Re: insert variablesmmatthew30 Apr
      • Re: insert variablesTim Endres30 Apr