[wp-trac] [WordPress Trac] #7084: Widget titles need to be auto-escaped.

WordPress Trac wp-trac at lists.automattic.com
Tue Jun 3 17:53:17 GMT 2008


#7084: Widget titles need to be auto-escaped.
---------------------+------------------------------------------------------
 Reporter:  Otto42   |       Owner:  anonymous
     Type:  defect   |      Status:  new      
 Priority:  normal   |   Milestone:  2.6      
Component:  General  |     Version:  2.5.1    
 Severity:  normal   |    Keywords:           
---------------------+------------------------------------------------------
 Reference: http://wordpress.org/support/topic/180280

 Short version: An ampersand in the title of a widget causes an output of
 just the ampersand instead of the html amp; code. This results in
 validation failure.

 Solution: Widget titles and possibly text widgets need to be html escaped
 before output onto the page.

-- 
Ticket URL: <http://trac.wordpress.org/ticket/7084>
WordPress Trac <http://trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list