最后我解决了。
if(isset("cmdEditCategory")){
$catName = str_replace('"',"`",str_replace("'","`",$_POST['txtCatName']));
$catId = $_POST['cmdEditCategory'];
$sqlEditCategory=$con->prepare("UPDATE categories SET catName=? WHERE catId=?");
$sqlEditCategory->bindParam(1, $catName, PDO::PARAM_STR, 25);
$sqlEditCategory->bindParam(2, $catId, PDO::PARAM_INT, 11);
if ($sqlEditCategory->execute()) {
echo "<script type='text/javascript'>notif('success','". MSG_SUCCESS ."','". MSG_UPDATED ."');</script>";
}else{
echo "<script type='text/javascript'>notif('error','". MSG_WARNING ."','". MSG_ERROR ."');</script>";
}
}
$strCats=$con->query("SELECT * FROM categories ORDER BY catName");
$CatsRows=$strCats->rowCount();
if ($CatsRows==0) {
echo "<div class='alert alert-danger'>". MSG_NO_DATA_FOUND ."</div>";
}else{
echo "<form action='/..$_SERVER[REQUEST_URI]' method='post'>
<table>";
while($CatsRow = $strCats->fetch()){
echo "<tr><td>$CatsRow[catName]</td>
<td>
<button type='submit' name='cmdEditCategory' value='$CatsRow[catId]' onclick='return editCategory(\"$CatsRow[catName]\");'>". EDIT ."</button>
</td>
</tr>";
}
echo "</table>
<div style='display:none'>
<input type='text' id='txtCatName' name='txtCatName' />
</div>
</form>
<script type='text/javascript'>
function editCategory(catName){
var msg = prompt('Rename category',catName);
if(msg != null){
document.getElementById('txtCatName').value=msg;
return true;
}else{
return false;
}
}
</script>";
}
如果有其他更好的解决方案,请回复。