In reviewing a Theme, I ran across the following function:<div><br></div><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><div><div>//add a fix for embed videos overlaing quickbar</div>
<div>function fastfood_content_replace(){</div><div><span class="Apple-tab-span" style="white-space:pre">        </span>$content = get_the_content();</div><div><span class="Apple-tab-span" style="white-space:pre">        </span>$content = apply_filters('the_content', $content);</div>
<div><span class="Apple-tab-span" style="white-space:pre">        </span>$content = str_replace(']]>', ']]&gt;', $content);</div><div><span class="Apple-tab-span" style="white-space:pre">        </span>$content = str_replace('<param name="allowscriptaccess" value="always">', '<param name="allowscriptaccess" value="always"><param name="wmode" value="transparent">', $content);</div>
<div><span class="Apple-tab-span" style="white-space:pre">        </span>$content = str_replace('<embed ', '<embed wmode="transparent" ', $content);</div><div><span class="Apple-tab-span" style="white-space:pre">        </span>echo $content;</div>
<div>}</div></div></blockquote><div><br></div><div>Just to be safe, I thought I would ask: does such filtering allow any potential security vulnerabilities? I admit that I don't know what exactly this function is accomplishing, which is why I'm asking.</div>
<div><br></div><div>Chip</div>