[wp-trac] [WordPress Trac] #37132: tinymce uses php open tag which can crash visual editor when server is set to parse JS files for PHP

WordPress Trac noreply at wordpress.org
Mon Jun 20 21:05:26 UTC 2016


#37132: tinymce uses php open tag which can crash visual editor when server is set
to parse JS files for PHP
-------------------------------+------------------------------
 Reporter:  oldbucsfan         |       Owner:
     Type:  defect (bug)       |      Status:  new
 Priority:  normal             |   Milestone:  Awaiting Review
Component:  TinyMCE            |     Version:  4.5.2
 Severity:  normal             |  Resolution:
 Keywords:  reporter-feedback  |     Focuses:
-------------------------------+------------------------------

Comment (by oldbucsfan):

 Also, it is useful to ensure a user is logged in through PHP (session
 data) before serving a javascript file that contains sensitive data. In
 some instances, javascript needs to contain sensitive data. Requiring that
 the user is logged in and has correct permissions with PHP before serving
 the file is a useful tool in such a situation since it can't be handled
 client side.

--
Ticket URL: <https://core.trac.wordpress.org/ticket/37132#comment:3>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list