[wp-trac] [WordPress Trac] #16058: Error massage HTML tags escaped

WordPress Trac wp-trac at lists.automattic.com
Sat Jan 1 14:36:10 UTC 2011


#16058: Error massage HTML tags escaped
--------------------------+------------------
 Reporter:  mako09        |       Owner:
     Type:  defect (bug)  |      Status:  new
 Priority:  normal        |   Milestone:  3.1
Component:  General       |     Version:
 Severity:  normal        |  Resolution:
 Keywords:  needs-patch   |
--------------------------+------------------
Changes (by nacin):

 * keywords:  has-patch => needs-patch
 * milestone:  Awaiting Review => 3.1


Comment:

 We need to here. It's possible to XSS yourself otherwise (I added this in
 3.0.2.) We can just move the esc_html up a line.

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/16058#comment:2>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list