[Tutor] pgdb and unicode

Kent Johnson kent37 at tds.net
Mon Oct 22 19:58:41 CEST 2007


Ismael Farfán Estrada wrote:
> by the way, does sending the data as a list prevent SQL injection?

Yes.

> I haven't worried for that yet.

If you are accepting user input and putting it into the database, you 
should worry about it. See
http://xkcd.com/327/
for a humorous take on this ;-)

Kent


More information about the Tutor mailing list