Hello folks,

Using PHP, if I have a text string I want to display, is it enough to use 
htmlentities() or htmlspecialchars()
to encode potentially dangerous characters, or do I need to take further 
precautions?

http://www.php.net/manual/en/function.htmlentities.php

http://www.php.net/manual/en/function.htmlspecialchars.php




-- 
JustThe.net LLC - Steve "Web Dude" Sobol, CTO      ICQ: 56972932/WebDude216
website: http://JustThe.net  email: [EMAIL PROTECTED]  phone: 216.619.2NET
postal: 5686 Davis Drive, Mentor On The Lake, OH 44060-2752  DalNet: ZX-2

Reply via email to