login
<?php require "functions.php" ; if ( $_SERVER [ 'REQUEST_METHOD' ] == "POST" ) { $email = addslashes ( $_POST [ 'email' ]); $password = addslashes ( $_POST [ 'password' ]); $query = "select * from users where email = ' $email ' && password = ' $password ' limit 1" ; $result = mysqli_query ( $con , $query ); if ( mysqli_num_rows ( $result ) > 0 ){ $row = mysqli_fetch_assoc ( $result ); $_SESSION [ 'info' ] = $row ; header ( "Location: profile.php" ); die ; } else { $error = "wrong email or password" ; ...