on 2006-04-15 21:35
(Received via mailing list)
I have a search form; I grab the value and use it in a fulltext query:

:conditions => ["idxfti @@ '" + search_string + "'::tsquery and

Characters in search_string like "?", ":", bomb active record.  I tried
single tick and "\" to escape those, but active record still bombs (same
queries via psql work).

