[wp-trac] [WordPress Trac] #59795: Private Information Exposure via redirect_guess_404_permalink()

WordPress Trac noreply at wordpress.org
Thu Nov 2 21:18:51 UTC 2023


#59795: Private Information Exposure via redirect_guess_404_permalink()
-------------------------------+----------------------------
 Reporter:  FrancescoCarlucci  |       Owner:  peterwilsoncc
     Type:  defect (bug)       |      Status:  assigned
 Priority:  normal             |   Milestone:  6.5
Component:  Canonical          |     Version:
 Severity:  minor              |  Resolution:
 Keywords:                     |     Focuses:  privacy
-------------------------------+----------------------------
Changes (by peterwilsoncc):

 * owner:  (none) => peterwilsoncc
 * status:  new => assigned
 * component:  General => Canonical
 * milestone:  Awaiting Review => 6.5


Comment:

 I've put this on the 6.5 milestone to include it in the next release.

 [attachment:"59795.diff"] modifies the SQL query for recovering from 404
 errors. I'll convert it to a pull request to include tests and any tidy-up
 that is required. I don't expect I'll get to this prior to the 6.4
 release.

 Thanks for the report @FrancescoCarlucci and getting in touch with the
 team prior to posting publicly.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/59795#comment:1>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list