lh-ehr
lh-ehr copied to clipboard
making Escape Column names function more flexible for different use cases
Currently there is a function to escape column names https://github.com/LibreHealthIO/lh-ehr/blob/master/library/formdata.inc.php#L82 but this method is not used extensively because it doesn't cover use cases where the column name is
-
*
-
$col1, $col2, $col3
Making the above function flexible will ensureselect $cols
statements within the code base are properly escaped. I would like to work on this if any other person sees the need to.
I think this could be a better function indeed. More importantly, more extensive use would be good, and provide proof-of-concept examples.