[wp-trac] [WordPress Trac] #11775: in ms-edit.php, illegal_names gets updated without the slightest validation

WordPress Trac wp-trac at lists.automattic.com
Wed Jan 6 18:58:31 UTC 2010


#11775: in ms-edit.php, illegal_names gets updated without the slightest validation
-------------------------------+--------------------------------------------
 Reporter:  Denis-de-Bernardy  |       Owner:  ryan
     Type:  defect (bug)       |      Status:  new 
 Priority:  normal             |   Milestone:  3.0 
Component:  Security           |     Version:  3.0 
 Severity:  normal             |    Keywords:      
-------------------------------+--------------------------------------------

Comment(by Denis-de-Bernardy):

 and banned_email_domains, and default_user_role, etc.

 default_user_role should additionally check that the default role doesn't
 have exotic caps (see #6566)

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/11775#comment:2>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list