1. ohoma db query gahuwoth machan kelinma sql injection thama. PDO bindParam use karanna.
2. oyage session eka denatamath set wela aththe. ekai pennanne naththe. echo $_SESSION['username'] dala balanna session eka thiyanawada kiyala. ehemanam mulin unset($_SESSION['username']) karala inna :)...