[wp-trac] [WordPress Trac] #13377: Add more sanitization in _cleanup_header_comment

WordPress Trac noreply at wordpress.org
Tue Sep 19 10:10:37 UTC 2017


#13377: Add more sanitization in _cleanup_header_comment
------------------------------------+--------------------------
 Reporter:  seanklein               |       Owner:  johnbillion
     Type:  defect (bug)            |      Status:  closed
 Priority:  normal                  |   Milestone:  4.8.2
Component:  Security                |     Version:  3.0
 Severity:  normal                  |  Resolution:  fixed
 Keywords:  has-patch dev-feedback  |     Focuses:
------------------------------------+--------------------------
Changes (by johnbillion):

 * status:  reviewing => closed
 * resolution:   => fixed


Comment:

 In [changeset:"41399"]:
 {{{
 #!CommitTicketReference repository="" revision="41399"
 General: Add missing URL-encoding and add extra hardening to plugin and
 template names when they're displayed in the admin area.

 Props kawauso, Mte90 for initial patches

 Fixes #13377
 }}}

--
Ticket URL: <https://core.trac.wordpress.org/ticket/13377#comment:7>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list