Use a DB abstraction layer, and prepared statements, to avoid SQL injection.
Log in to post a comment.