[wp-svn] [5057] branches/2.1: use clean_url() instead of
attribute_escape() when dealing with src/href to protect
against XSS.
m at wordpress.org
m at wordpress.org
Sat Mar 17 08:47:37 GMT 2007
An HTML attachment was scrubbed...
URL: http://comox.textdrive.com/pipermail/wp-svn/attachments/20070317/55005292/attachment-0001.htm
More information about the wp-svn
mailing list