[buddypress-trac] [BuddyPress] #2603: xprofile field values aren't sanitised in database

buddypress-trac at lists.automattic.com buddypress-trac at lists.automattic.com
Thu Aug 26 01:22:00 UTC 2010


#2603: xprofile field values aren't sanitised in database
----------------------+-----------------------------------------------------
 Reporter:  DJPaul    |       Owner:  DJPaul   
     Type:  defect    |      Status:  assigned 
 Priority:  blocker   |   Milestone:  1.2.6    
Component:  XProfile  |    Keywords:  has-patch
----------------------+-----------------------------------------------------

Comment(by jeffsayre):

 I would also pass textual data through the sanitize_text_field filter
 added in WP 2.9.0. See function sanitize_text_field() on line 2795 of /wp-
 includes/formatting.php

-- 
Ticket URL: <http://trac.buddypress.org/ticket/2603#comment:7>
BuddyPress <http://buddypress.org/>
BuddyPress


More information about the buddypress-trac mailing list