[wp-trac] Re: [WordPress Trac] #4789: Write Post title doesn't escape HTML tags

WordPress Trac wp-trac at lists.automattic.com
Tue Aug 28 18:31:13 GMT 2007


#4789: Write Post title doesn't escape HTML tags
---------------------+------------------------------------------------------
 Reporter:  hje1555  |        Owner:  anonymous 
     Type:  defect   |       Status:  new       
 Priority:  normal   |    Milestone:  2.4 (next)
Component:  General  |      Version:            
 Severity:  normal   |   Resolution:            
 Keywords:           |  
---------------------+------------------------------------------------------
Comment (by hje1555):

 This kind of input should be sanitized. The exception is the Code view,
 where it is clear that a restricted set of XHTML is allowed.

-- 
Ticket URL: <http://trac.wordpress.org/ticket/4789#comment:4>
WordPress Trac <http://trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list