[wp-trac] [WordPress Trac] #11922: Pages Hooked by add_menu_page() Have No Security

WordPress Trac wp-trac at lists.automattic.com
Wed Jan 27 03:12:47 UTC 2010


#11922: Pages Hooked by add_menu_page() Have No Security
-----------------------------+----------------------------------------------
 Reporter:  miqrogroove      |       Owner:  westi    
     Type:  defect (bug)     |      Status:  accepted 
 Priority:  high             |   Milestone:  2.9.2    
Component:  Role/Capability  |     Version:           
 Severity:  critical         |    Keywords:  has-patch
-----------------------------+----------------------------------------------

Comment(by miqrogroove):

 If there's no momentum for checking the callback hook, then let's call
 this fixed. (?)  I added a permissions check to every public function in
 my own plugins, and that's good enough for me!

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/11922#comment:10>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list