Just make sure that you properly escape your content again before you let it be saved to the database.
-
☆ A M B ☆
- 24,524 Posts
$modx->db->escape() might be a better choice. It’s a wrapper for mysql_real_esacape_string, which provides better database protection, although it’s still not quite the last word on the subject...
http://www.sitepoint.com/forums/showthread.php?t=337881