i have this code and it seems its vulnerable to sql injection. How can i secure this?
mysql_query $query = mysql_query("SELECT * FROM users WHERE username='$username'") or die (mysql_error());
$username = $_POST['username'];
i have this code and it seems its vulnerable to sql injection. How can i secure this?
mysql_query $query = mysql_query("SELECT * FROM users WHERE username='$username'") or die (mysql_error());
$username = $_POST['username'];