Hello. There is a query like:

Insert into baza Values(str); 

If the str contains the character "(double quote) - a syntax error takes off. How is it better to bypass such a thing? I am writing to java.

  • To google about java and db? - user6550

1 answer 1

Use parameterized queries:

 SQLiteCommand cmd = new SQLiteCommand(@"Insert into baza Values(@param)", SQLConnection); cmd.Parameters.Add(new SQLiteParameter("@param")); cmd.Parameters["@param"].Value = str; 
  • 2
    why c #? - rasmisha