我只是想知道这两组代码是否做同样的事情,如果不是有什么区别?
$connect= new CONNECT();
$sql = ("query here");
$stmt = $connect->runQuery($sql);
$stmt->bindParam(':sample', $_POST['sample'], PDO::PARAM_STR);
$stmt->bindParam(':sample2', $_POST['sample2'], PDO::PARAM_STR);
$stmt->bindParam(':sample3', $_POST['sample3'], PDO::PARAM_STR);
$stmt->execute();
Run Code Online (Sandbox Code Playgroud)
=======================和========================
$connect= new CONNECT();
$sql = ("query here");
$stmt = $connect->runQuery($sql);
$stmt->execute(Array(
':sample1' => $_POST['sample'],
':sample2' => $_POST['sample2'],
':sample3' => $_POST['sample3']
));
Run Code Online (Sandbox Code Playgroud)
仅供参考,两者都很完美,只是想知道我是否使用其中任何一个获得全部安全性好处.谢谢.