1. $username = escape($username);
  2. $password = escape($password);
  3.  
  4. $query = $db->execute("SELECT id,username FROM users WHERE username=$username AND password=$password")