[wp-trac] [WordPress Trac] #29555: Theme details allowed HTML

WordPress Trac noreply at wordpress.org
Wed Oct 15 16:59:36 UTC 2014


#29555: Theme details allowed HTML
--------------------------+-----------------------------
 Reporter:  afercia       |       Owner:
     Type:  defect (bug)  |      Status:  new
 Priority:  normal        |   Milestone:  Future Release
Component:  Themes        |     Version:  3.9
 Severity:  normal        |  Resolution:
 Keywords:  dev-feedback  |     Focuses:
--------------------------+-----------------------------
Changes (by obenland):

 * keywords:   => dev-feedback
 * version:  4.0 => 3.9
 * milestone:  Awaiting Review => Future Release


Comment:

 It looks like the .org Themes API returns escaped HTML in its response.
 So we could either [https://core.trac.wordpress.org/browser/tags/4.0/src
 /wp-admin/includes/ajax-actions.php#L2619 decode it on the core side], or
 not escape it on the API side. Not sure what the preferred method would be
 here.

--
Ticket URL: <https://core.trac.wordpress.org/ticket/29555#comment:1>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list