From a69709b305673c2e5754d2982b89a664d7d1d841 Mon Sep 17 00:00:00 2001 From: Joe Nahmias Date: Sun, 19 Feb 2023 20:09:44 -0500 Subject: [PATCH] quote sql query parameters when writing to the debug log --- libs/picodb/lib/PicoDb/StatementHandler.php | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/libs/picodb/lib/PicoDb/StatementHandler.php b/libs/picodb/lib/PicoDb/StatementHandler.php index c968478cc..efc485c1d 100644 --- a/libs/picodb/lib/PicoDb/StatementHandler.php +++ b/libs/picodb/lib/PicoDb/StatementHandler.php @@ -269,13 +269,13 @@ class StatementHandler foreach ($this->positionalParams as $value) { $pdoStatement->bindValue($i, $value, PDO::PARAM_STR); - $this->db->setLogMessage("param[$i]: $value"); + $this->db->setLogMessage("param[$i]: '$value'"); $i++; } foreach ($this->namedParams as $name => $value) { $pdoStatement->bindValue($name, $value, PDO::PARAM_STR); - $this->db->setLogMessage("param[$name]: $value"); + $this->db->setLogMessage("param[$name]: '$value'"); } }