[wp-trac] [WordPress Trac] #32413: Including http://*. in $_GET variable breaks user session

WordPress Trac noreply at wordpress.org
Fri May 15 16:11:35 UTC 2015


#32413: Including http://*. in $_GET variable breaks user session
--------------------------+------------------------------
 Reporter:  zergling81    |       Owner:
     Type:  defect (bug)  |      Status:  new
 Priority:  normal        |   Milestone:  Awaiting Review
Component:  General       |     Version:  4.2.2
 Severity:  normal        |  Resolution:
 Keywords:                |     Focuses:
--------------------------+------------------------------

Comment (by zergling81):

 I should add, it doesn't matter what comes before the first period, so
 long as there is something - http://abc.yahoo.com or http://yahoo.com
 would produce the bug, http://.yahoo.com would not.

--
Ticket URL: <https://core.trac.wordpress.org/ticket/32413#comment:2>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list