The code is vulnerable to SQL injection, use prepared statements for queries with user input!
The code is vulnerable to SQL injection, use prepared statements for queries with user input!