Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
ipaddr
on July 26, 2021
|
parent
|
context
|
favorite
| on:
Google results for PHP tutorials contain SQL injec...
How often are you passing dozens or hundreds of parameters to a single sql statement? Maybe there is a better way to structure things.
sellyme
on July 26, 2021
[–]
How often am
I
doing it? Not very. But when there's a WHERE foo IN(a,b,c,...) query that has an arbitrary list as input? Could be any number of parameters in there (although I think most SQL drivers start complaining in the early quadruple digits).
Consider applying for YC's W25 batch! Applications are open till Nov 12.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: