Changeset 730 for trunk/docs


Ignore:
Timestamp:
Jan 12, 2016, 8:58:54 PM (4 years ago)
Author:
cito
Message:

Use query parameters instead of inline values

The single row methods of the DB wrapper class created queries with inline values
instead of passing them separately as parameters, even though our query method
does have this capability. Using query parameters also spares us a lot of quoting
and escaping that is necessary when passing values inline.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/docs/contents/changelog.rst

    r729 r730  
    3535  Note that OIDs are considered deprecated anyway, and they are not created
    3636  by default any more in PostgreSQL 8.1 and later.
    37 - Simplified the internal caching and mechanisms for automatic quoting
    38   of class names in the classic interface, these things should now both
    39   perform better and use less memory.
    40 
     37- The internal caching and automatic quoting of class names in the classic
     38  interface has been simplified and improved, it should now perform better
     39  and use less memory. Also, overhead for quoting and escaping values in the
     40  DB wrapper methods has been reduced and security has been improved by
     41  passing the values to libpq separately as parameters instead of inline.
    4142
    4243Version 4.2
Note: See TracChangeset for help on using the changeset viewer.