[wp-trac] [WordPress Trac] #10896: preg_replace with eval modifier used in _fix_attachment_links

WordPress Trac wp-trac at lists.automattic.com
Thu Oct 8 08:22:38 UTC 2009


#10896: preg_replace with eval modifier used in _fix_attachment_links
--------------------------+-------------------------------------------------
 Reporter:  westi         |       Owner:  westi      
     Type:  defect (bug)  |      Status:  new        
 Priority:  high          |   Milestone:  2.9        
Component:  Security      |     Version:  2.8.4      
 Severity:  major         |    Keywords:  needs-patch
--------------------------+-------------------------------------------------

Comment(by hakre):

 I think the original author of that function should take care and remove
 it by her/himself. Really that needs to go out. And please add a policy to
 the coding guidelines that these eval switches are not to be used any
 longer.

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/10896#comment:4>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list