[wp-trac] [WordPress Trac] #37490: Improve capability checks in wp_ajax_update_plugin() and wp_ajax_delete_plugin()

WordPress Trac noreply at wordpress.org
Wed Jul 27 17:42:13 UTC 2016


#37490: Improve capability checks in wp_ajax_update_plugin() and
wp_ajax_delete_plugin()
--------------------------+----------------------
 Reporter:  ocean90       |       Owner:  ocean90
     Type:  defect (bug)  |      Status:  closed
 Priority:  normal        |   Milestone:  4.6
Component:  Plugins       |     Version:  trunk
 Severity:  normal        |  Resolution:  fixed
 Keywords:                |     Focuses:
--------------------------+----------------------
Changes (by ocean90):

 * owner:   => ocean90
 * status:  new => closed
 * resolution:   => fixed


Comment:

 In [changeset:"38168"]:
 {{{
 #!CommitTicketReference repository="" revision="38168"
 Plugins: Move capability checks further up in `wp_ajax_update_plugin()`
 and `wp_ajax_delete_plugin()`.

 Add tests for both Ajax handlers.

 Props Yorick Koster, swissspidy.
 Fixes #37490.
 }}}

--
Ticket URL: <https://core.trac.wordpress.org/ticket/37490#comment:1>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list