////MYSQL Statement////
$sql = $mysql_conn->prepare("UPDATE table SET columnname = ? WHERE id = ?";
$sql->execute(array($new_value,$id));
////SQL Statment////
$client_select = array($select);
$tsql1 = "SELECT * FROM customertable where id = ?";
$result1 = sqlsrv_query($conn, $tsql1,$client_select);
$row1 = sqlsrv_fetch_array($result1, SQLSRV_FETCH_ASSOC);
もしそうなら、MYSQLのものがより安全である理由について誰かが私に詳細を教えてもらえますか?
$sql = mysql_query("select * from customers where id='$id'");
$sql = mysql_fetch_assoc($sql);