<?php $var = '1,2,3,4,5,6,7,8,9,10,0);DROP table users'; $var = explode(',', $var); array_walk($var, function(&$value){ $value = (int) $value; }); $sql = ' SELECT * FROM table WHERE id NOT IN ( '.implode(',', array_fill(0, count($var), '?')).' ) '; echo $sql;
You have javascript disabled. You will not be able to edit any code.