Sign Up

Sign Up to our social questions and Answers Engine to ask questions, answer people’s questions, and connect with other people.

Have an account? Sign In

Have an account? Sign In Now

Sign In

Login to our social questions & Answers Engine to ask questions answer people’s questions & connect with other people.

Sign Up Here

Forgot Password?

Don't have account, Sign Up Here

Forgot Password

Lost your password? Please enter your email address. You will receive a link and will create a new password via email.

Have an account? Sign In Now

You must login to ask a question.

Forgot Password?

Need An Account, Sign Up Here

Please briefly explain why you feel this question should be reported.

Please briefly explain why you feel this answer should be reported.

Please briefly explain why you feel this user should be reported.

Sign InSign Up

The Archive Base

The Archive Base Logo The Archive Base Logo

The Archive Base Navigation

  • SEARCH
  • Home
  • About Us
  • Blog
  • Contact Us
Search
Ask A Question

Mobile menu

Close
Ask a Question
  • Home
  • Add group
  • Groups page
  • Feed
  • User Profile
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Buy Points
  • Users
  • Help
  • Buy Theme
  • SEARCH
Home/ Questions/Q 7727389
In Process

The Archive Base Latest Questions

Editorial Team
  • 0
Editorial Team
Asked: June 1, 20262026-06-01T05:26:48+00:00 2026-06-01T05:26:48+00:00

I have code like this: function search_keyword(){ $keyword = trim($_POST[‘keyword’]); $search_explode = explode( ,

  • 0

I have code like this:

function search_keyword(){
            $keyword = trim($_POST['keyword']);
            $search_explode = explode(" ", $keyword);
            $x = 0;

            $sql = " ( SELECT  name, id_global_info AS id, body AS body, tag AS tag  ,info_type_id AS info_type, \"global_info\" AS mytable FROM global_info WHERE ";
            foreach($search_explode as $each){
                $x++;
                if($x == 1){
                   $sql .= " name LIKE '%$each%' ";}                          
                else {

                    $sql .= " AND name LIKE '%$each%' ";
                }
            }

              $sql .= " ) UNION ALL "; 

              $sql .= " ( SELECT name, id_person AS id, surname AS body, info AS tag , location AS info_type, \"person\" AS mytable FROM person WHERE ";
            foreach($search_explode as $each){
                $x++;
                if($x == 1){
                   $sql .= " name LIKE '%$each%' ";}                          
                else {

                    $sql .= " AND name LIKE '%$each%' ";
                }
            }

              $sql .= " ) UNION ALL ";

              $sql .= "( SELECT name, id_event AS id, body AS body, caffe_id AS tag , date AS info_type, \"event\" AS mytable FROM event WHERE ";
            foreach($search_explode as $each){
                $x++;
                if($x == 1){
                   $sql .= " name LIKE '%$each%' ";}                          
                else {

                    $sql .= " AND name LIKE '%$each%' ";
                }
            }

            $sql .= " ) UNION ALL ";

              $sql .= "( SELECT name, id_caffe AS id, description AS body, adress AS tag, location_id AS info_type, \"caffe\" AS mytable FROM caffe WHERE ";
            foreach($search_explode as $each){
                $x++;
                if($x == 1){
                   $sql .= " name LIKE '%$each%' ";}                          
                else {

                    $sql .= " AND name LIKE '%$each%' ";
                }
            }

            $sql .= " ) ";
            echo $sql;
            $q = $this->db->query($sql);
             return $q = $q->num_rows() == 0 ? FALSE :  $q->result();
        }

When I search for exapmle

“mali oglasi”

I get following error:

Error Number: 1064

You have an error in your SQL syntax; check the manual that
corresponds to your MySQL server version for the right syntax to use
near ‘AND name LIKE ‘%mali%’ AND name LIKE ‘%oglas%’ ) UNION ALL (
SELECT name, id_e’ at line 1

This is MySQL query it is producing:

( SELECT name, id_global_info AS id, body AS body, tag AS tag ,info_type_id AS info_type, "global_info" AS mytable FROM global_info WHERE name LIKE '%mali%' AND name LIKE '%oglas%' )
 UNION ALL
 ( SELECT name, id_person AS id, surname AS body, info AS tag , location AS info_type, "person" AS mytable FROM person WHERE AND name LIKE '%mali%' AND name LIKE '%oglas%' ) 
UNION ALL
 ( SELECT name, id_event AS id, body AS body, caffe_id AS tag , date AS info_type, "event" AS mytable FROM event WHERE AND name LIKE '%mali%' AND name LIKE '%oglas%' ) 
UNION ALL
 ( SELECT name, id_caffe AS id, description AS body, adress AS tag, location_id AS info_type, "caffe" AS mytable FROM caffe WHERE AND name LIKE '%mali%' AND name LIKE '%oglas%' ) 

What seems to be an error?

  • 1 1 Answer
  • 0 Views
  • 0 Followers
  • 0
Share
  • Facebook
  • Report

Leave an answer
Cancel reply

You must login to add an answer.

Forgot Password?

Need An Account, Sign Up Here

1 Answer

  • Voted
  • Oldest
  • Recent
  • Random
  1. Editorial Team
    Editorial Team
    2026-06-01T05:26:50+00:00Added an answer on June 1, 2026 at 5:26 am

    First thing’s first: don’t forget to escape your input value. This can be done in your case either on the initial value, or for each iteration of the foreach loop on $each

    // If your query() method calls mysql_query()
    $keyword = mysql_real_eascape_string(trim($_POST['keyword']));
    // Or if query() is mysqli::query()
    $keyword = $this->db->real_escape_string(trim($_POST['keyword']));
    // Or if this is Codeigniter's API
    $keyword = $this->db->escape_like_str(trim($_POST['keyword']));
    

    You need to reset $x at the start of each foreach loop:

           // Reset $x to 0 before the start of each of your loops.
           $x = 0;
           foreach($search_explode as $each){
                $x++;
                if($x == 1){
                   $sql .= " name LIKE '%$each%' ";}                          
                else {
    
                    $sql .= " AND name LIKE '%$each%' ";
                }
            }
    

    Note: It is generally advisable to use parameterized queries instead of building the query by concatenation and interpolation. Codeigniter uses ? placeholders for that.

    • 0
    • Reply
    • Share
      Share
      • Share on Facebook
      • Share on Twitter
      • Share on LinkedIn
      • Share on WhatsApp
      • Report

Sidebar

Related Questions

I have code like this: function search_keyword(){ $keyword = trim($_POST['keyword']); $search_explode = explode( ,
I have code like this: function search_keyword(){ $keyword = $this->db->escape_like_str(trim($_POST['keyword'])); $sql = ( SELECT
I have a similar code snippet like this class Search { public function search($for,
I have code like this var MyObj = { f1 : function(o){ o.onmousedown =
I have some code like this: var content = document.getElementById('myDivId'); function MyFunction() { alert(content.style.height);
I have got code like this var challegneListener; $(document).ready(function(){ var challegneListener = setInterval(challengeListenerBot(),5000); });
If I have a chunk of code like this: .hover( function () { hoverState($(#navbar
I have code that looks like this: var baseClass = function() { // CODE
I have lots of code like this in my constructors:- function __construct($params) { $this->property
I have code like below. If I open the file $File::Find::name (in this case

Explore

  • Home
  • Add group
  • Groups page
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Users
  • Help
  • SEARCH

Footer

© 2021 The Archive Base. All Rights Reserved
With Love by The Archive Base

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.