i build a simple search form with onchange event but when i put in search input something like / or \' or alert( it returning my error and this is my backend code: