mysqli_real_escape_string when using $_GET and custom SQL queries

2 posts by 2 authors in: Forums > CMS Builder
Last Post: May 30, 2018   (RSS)

By netsoftservices - May 25, 2018

Hi All,

I am creating some custom queries to the CMS database and want to make sure they are clean and safe.

How do I get the $link var that is needed for mysqli to do the escaping?

mysqli_real_escape_string( $link, $_POST['some_info'])
I have searched the forum and found info on the old mysql_real_escape_string() function, but would like to use the newer function since you all went through the trouble to update CMSBuilder to user MySQLi.

Thanks for any info.