PDO使用bindValue调试更新查询


PDO debugging update query using bindValue

我正在使用PDO,但我找不到里面有什么问题,即使PDO的setAttribute设置为.,似乎也不会出错

    $fields = $data['fields'];
    $cartID = $data['cartID'];
    $sql = "UPDATE ShoppingCart 
            SET shipToSameLocation_shippingLocationID = :shippingLocationID, shipToSameLocation_shippingMethod = :shippingMethod, shipToSameLocation = 1
            WHERE cartID = :cartID";
    $query = $conn->prepare($sql);
    $query->bindValue(':shippingLocationID', $fields['shipToSameLocation_shippingLocationID'], PDO::PARAM_INT);
    $query->bindValue(':shippingMethod', $fields['shipToSameLocation_shippingMethod'], PDO::PARAM_STR);
    $query->bindValue(':cartID', $cartID, PDO::PARAM_INT);
    $query->execute();

有什么和PDO有关的问题吗?

Proabaly,因为您明确表示该值将是int,但没有强制post值为和int;

$fields = $data['fields'];
$cartID = (int) $data['cartID'];
$sql = "UPDATE ShoppingCart 
        SET shipToSameLocation_shippingLocationID = :shippingLocationID, shipToSameLocation_shippingMethod = :shippingMethod, shipToSameLocation = 1
        WHERE cartID = :cartID";
$query = $conn->prepare($sql);
$query->bindValue(':shippingLocationID', $fields['shipToSameLocation_shippingLocationID'], PDO::PARAM_INT);
$query->bindValue(':shippingMethod', $fields['shipToSameLocation_shippingMethod'], PDO::PARAM_STR);
$query->bindValue(':cartID', $cartID, PDO::PARAM_INT);
$query->execute();

绑定的其他值也是如此,所以将它们强制转换为正确的类型,或者最好不要使用绑定值。就我个人而言,我从未费心绑定参数或值,我只是将一个关联数组传递到PDO中。

$locId = (int) $fields['shipToSameLocation_shippingLocationID'];
$method =  $fields['shipToSameLocation_shippingMethod'];
$cartId = (int) $data['cartID'];
$params = array(
    ':shippingLocationID' => $locId ,
    ':shippingMethod' => $method,
    ':cartID' => $cartId
);
$query->execute($params);

每次都很有魅力。在我工作的大多数地方,其他人最终都会采用这种方法,因为它在编码和使用方面的麻烦要小得多,但这取决于你。