hi i have a website with php and mysql, and i just learned about sql injection where your website can get hacked by simple puting this on the username and password..

' or 1=1--

how can i avoid or stop sql injections from happening to my website