phpstudy所有软件,已经通过360安全检测认证,phpstudy linux web面板(docker),已发布安全检测与修复



(PHP 5 >= 5.1.0)

pg_query_paramsSubmits a command to the server and waits for the result, with the ability to pass parameters separately from the SQL command text.


resource pg_query_params ([ resource $connection ], string $query , array $params )

Submits a command to the server and waits for the result, with the ability to pass parameters separately from the SQL command text.

pg_query_params() is like pg_query(), but offers additional functionality: parameter values can be specified separately from the command string proper. pg_query_params() is supported only against PostgreSQL 7.4 or higher connections; it will fail when using earlier versions.

If parameters are used, they are referred to in the query string as $1, $2, etc. params specifies the actual values of the parameters. A NULL value in this array means the corresponding parameter is SQL NULL.

The primary advantage of pg_query_params() over pg_query() is that parameter values may be separated from the query string, thus avoiding the need for tedious and error-prone quoting and escaping. Unlike pg_query(), pg_query_params() allows at most one SQL command in the given string. (There can be semicolons in it, but not more than one nonempty command.)



PostgreSQL database connection resource. When connection is not present, the default connection is used. The default connection is the last connection made by pg_connect() or pg_pconnect().


The parameterized SQL statement. Must contain only a single statement. (multiple statements separated by semi-colons are not allowed.) If any parameters are used, they are referred to as $1, $2, etc.


An array of parameter values to substitute for the $1, $2, etc. placeholders in the original prepared query string. The number of elements in the array must match the number of placeholders.


A query result resource on success 或者在失败时返回 FALSE.


Example #1 Using pg_query_params()

// Connect to a database named "mary"
$dbconn pg_connect("dbname=mary");

// Find all shops named Joe's Widgets.  Note that it is not necessary to
// escape "Joe's Widgets"
$result pg_query_params($dbconn'SELECT * FROM shops WHERE name = $1', array("Joe's Widgets"));

// Compare against just using pg_query
$str pg_escape_string("Joe's Widgets");
$result pg_query($dbconn"SELECT * FROM shops WHERE name = '{$str}'");



  • pg_affected_rows
  • pg_cancel_query
  • pg_client_encoding
  • pg_close
  • pg_connect
  • pg_connection_busy
  • pg_connection_reset
  • pg_connection_status
  • pg_convert
  • pg_copy_from
  • pg_copy_to
  • pg_dbname
  • pg_delete
  • pg_end_copy
  • pg_escape_bytea
  • pg_escape_identifier
  • pg_escape_literal
  • pg_escape_string
  • pg_execute
  • pg_fetch_all
  • pg_fetch_all_columns
  • pg_fetch_array
  • pg_fetch_assoc
  • pg_fetch_object
  • pg_fetch_result
  • pg_fetch_row
  • pg_field_is_null
  • pg_field_name
  • pg_field_num
  • pg_field_prtlen
  • pg_field_size
  • pg_field_table
  • pg_field_type
  • pg_field_type_oid
  • pg_free_result
  • pg_get_notify
  • pg_get_pid
  • pg_get_result
  • pg_host
  • pg_insert
  • pg_last_error
  • pg_last_notice
  • pg_last_oid
  • pg_lo_close
  • pg_lo_create
  • pg_lo_export
  • pg_lo_import
  • pg_lo_open
  • pg_lo_read
  • pg_lo_read_all
  • pg_lo_seek
  • pg_lo_tell
  • pg_lo_unlink
  • pg_lo_write
  • pg_meta_data
  • pg_num_fields
  • pg_num_rows
  • pg_options
  • pg_parameter_status
  • pg_pconnect
  • pg_ping
  • pg_port
  • pg_prepare
  • pg_put_line
  • pg_query
  • pg_query_params
  • pg_result_error
  • pg_result_error_field
  • pg_result_seek
  • pg_result_status
  • pg_select
  • pg_send_execute
  • pg_send_prepare
  • pg_send_query
  • pg_send_query_params
  • pg_set_client_encoding
  • pg_set_error_verbosity
  • pg_trace
  • pg_transaction_status
  • pg_tty
  • pg_unescape_bytea
  • pg_untrace
  • pg_update
  • pg_version
  • PHP MySQL HTML CSS JavaScript MSSQL AJAX .NET JSP Linux Mac ASP 服务器 SQL jQuery C# C++ java Android IOS oracle MongoDB SQLite wamp 交通频道


    打开 微信