防止SQL注入(可防xss)

Run Settings
LanguagePHP
Language Version
Run Command
<?php if (isset($_POST['name'])){ $str = trim($_POST['name']); //清理空格 $str = strip_tags($str); //过滤html标签 $str = htmlspecialchars($str); //将字符内容转化为html实体 $str = addslashes($str); //防止SQL注入 echo $str; } ?>
Editor Settings
Theme
Key bindings
Full width
Lines