CF has been doing proper single-quote replacement all the way back to
the early days (at least CF3, probably all the way back to the
original), so that is not the issue.

-----Original Message-----
From: Chad Gray [mailto:[EMAIL PROTECTED] 
Sent: Friday, February 01, 2008 1:55 PM
To: CF-Talk
Subject: cf5 and single quote

I am forced to use CF5.

Now if someone enters a single quote in a form and I try to insert it
into the database I get a SQL error because the single quote is not
escaped.

Is there an easy way to fix this in CF5?

Does cfqueryparam escape them?




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
Adobe® ColdFusion® 8 software 8 is the most important and dramatic release to 
date
Get the Free Trial
http://ad.doubleclick.net/clk;160198600;22374440;w

Archive: 
http://www.houseoffusion.com/groups/CF-Talk/message.cfm/messageid:297947
Subscription: http://www.houseoffusion.com/groups/CF-Talk/subscribe.cfm
Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=89.70.4

Reply via email to