db_escape_field($field)
Restricts a dynamic column or constraint name to safe characters.
Only keeps alphanumeric and underscores.
Parameters
string $field: The field name to escape.
Return value
string The escaped field name as a string.
Deprecated
as of Drupal 8.0.x, will be removed in Drupal 9.0.0. Instead, get a database connection injected into your service from the container and call escapeTable() on it. For example, $injected_database->escapeTable($table);
See also
\Drupal\Core\Database\Connection::escapeField()
Related topics
- Database abstraction layer
- Allow the use of different database servers using the same code base.
File
- core/includes/database.inc, line 381
- Core systems for the database layer.
Code
function db_escape_field($field) { return Database::getConnection()->escapeField($field); }
Please login to continue.