... until somebody tries to enter a username that contains a '.
No argument with that. The various responses indicating the use of placeholders (including your own) are a better general solution.
My post was based on:
I might also point out that when I started to type up my response there where no current replies: I wasn't intending to provide a better solution or invalidate any answers that were submitted in the few minutes before my own.
Update: Added a blockquote at the top.
-- Ken
In reply to Re^3: Wrong SQL Syntax?
by kcott
in thread Wrong SQL Syntax?
by Frederic_S
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |