即使我尚未注册,也会显示“用户名/电子邮件已注册”

时间:2019-04-05 20:52:43

标签: php mysqli

仅当发现重复项时,我才尝试回显“用户名/电子邮件已被注册”,但我一直坚持这种回声,直到我注册为止。 仅当发现重复项并且我在这里做错什么时,我才能显示此信息吗?

 // register users

 if(isset($_POST['username']) && !empty($_POST['username'])){$username = mysqli_real_escape_string($mysqli, $_POST['username']);} 
 if(isset($_POST['email']) && !empty($_POST['email'])){$email = mysqli_real_escape_string($mysqli, $_POST['email']);}
 if(isset($_POST['password']) && !empty($_POST['password'])){$password = mysqli_real_escape_string($mysqli, $_POST['password']);}
 if(isset($_POST['confirm_password'])){$confirm_password =mysqli_real_escape_string($mysqli,$_POST['confirm_password']);}

 //chkd && secon

 $chkd = $mysqli->prepare("SELECT * FROM user WHERE username = ? AND email =?");
 $chkd->bind_param("ss", $username, $email);
 $chkd->execute();
 $chkd->store_result();

 $numRows = $chkd->num_rows();
 if( $numRows ){
 echo "<p style='text-align: center; color:red'>Username/Email is   already registered</p>"; 

 } else {

 $secon = $mysqli->prepare("INSERT INTO user (username, email, password) VALUES (?, ?, ?)");
 $secon->bind_param("sss", $username, $email, $password);
 $secon->execute();
 $secon->close();
 $chkd->close();

 echo "<p style='text-align: center; color:red'>DATA registered</p>";};

1 个答案:

答案 0 :(得分:0)

我添加了它以在表单中显示错误

<?php if(count($errors) > 0): ?>
<div class="alert alert-danger">
    <?php foreach($errors as $error): ?>
        <li><?php echo $error; ?></li>
    <?php endforeach; ?>
</div>
<?php endif; ?>

这是经过重做的代码的样子,它的工作原理是:)

<?php

session_start();

// errvar

$errors = array();

// register 

if (isset($_POST['register-submit'])) {
  $username = $_POST['username'];
  $email = $_POST['email'];
  $password = $_POST['password'];
  $confirm_password = $_POST['confirm_password'];

// validation

$chkd = $mysqli->prepare("SELECT * FROM user WHERE email = ? LIMIT 1");
$chkd->bind_param("s", $email);
$chkd->execute();
$chkd->store_result();
$row_cnt = $chkd->num_rows;
$chkd->close();

if ($row_cnt > 0) {
    $errors['email'] = "Email already exists";
}

$chkd = $mysqli->prepare("SELECT * FROM user WHERE username = ? LIMIT 1");
$chkd->bind_param("s", $username);
$chkd->execute();
$chkd->store_result();
$row_cnt = $chkd->num_rows;
$chkd->close();

if ($row_cnt > 0) {
    $errors['username'] = "Username already exists";
}


if (count($errors) === 0) {
    $password = password_hash($password, PASSWORD_DEFAULT);
    $secon = $mysqli->prepare("INSERT INTO user (username, email, password) VALUES (?, ?, ?)");
    $secon->bind_param("sss", $username, $email, $password);
    $secon->execute();
    $secon->close();
    header('Location:home.php');
    exit();
  }
};
?>