Can I avoid sql injection in sqlite fts replacing quotes?
Here is my sql in cpp:
boost::format("select Rowid from Name where Idx match '%s'") % key
Is it safe to prevent injection by filtering quotation marks?
exmaple:
key : "ab'c" -> "ab''c"
key : "a\"b'c" -> "a\"\"b'c"
More Stories
Best Practices for Online Marketing Plumbers: Template Customization Guide
In the realm of online marketing for plumbers, mastering SEO navigation best practices is akin to unlocking the hidden treasure...
Situs Slot Pulsa Playtech Tergacor Winning Rate Tinggi
Melihat perkembangan slot pulsa yang sudah semakin pesat saat ini tentu saja tidak terlepas dari banyaknya provider yang telah mengembangkan...
Getting Up To Speed With Great Home Business Ideas
Perhaps you are one of the many Americans who constantly thinks about opening a home business. There are many people...
Learn How To Successfully Run Your Home Business
The good news is that anyone can truly succeed at business if they have something to offer and a great...
The Lies And Truths About Home Business
A home business is something a lot of people strive to have, but fewer actually successfully obtain. A lot of...
Learn More About Web Design With These Great Tips
Do you want to live free and make your own hours while making good money right at home? This is...