[wp-trac] [WordPress Trac] #24328: blogname and blogdescription are not escaped

WordPress Trac noreply at wordpress.org
Mon May 13 09:12:06 UTC 2013


#24328: blogname and blogdescription are not escaped
----------------------------+-----------------------------
 Reporter:  aniketpant      |      Owner:
     Type:  defect (bug)    |     Status:  new
 Priority:  normal          |  Milestone:  Awaiting Review
Component:  Administration  |    Version:
 Severity:  normal          |   Keywords:
----------------------------+-----------------------------
 I was trying to set my Site Title to '''<?= test ?>'''. On saving the
 settings, the field returned empty. The same problem occurred with the
 Tagline.

 After looking into `wp-admin/options.php`, I noticed that there was no
 provision made for escaping the fields.

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/24328>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list