[wp-trac] [WordPress Trac] #41921: add esc_html before the admin title display

WordPress Trac noreply at wordpress.org
Tue Sep 19 14:21:53 UTC 2017


#41921: add esc_html before the admin title display
----------------------------+------------------------------
 Reporter:  lalitpendhare   |       Owner:
     Type:  enhancement     |      Status:  new
 Priority:  normal          |   Milestone:  Awaiting Review
Component:  Administration  |     Version:
 Severity:  normal          |  Resolution:
 Keywords:  has-patch       |     Focuses:
----------------------------+------------------------------
Changes (by SergeyBiryukov):

 * focuses:  administration =>
 * component:  Import => Administration


Comment:

 Hi @lalitpendhare, thanks for the ticket!

 The title already runs through `esc_html()` [source:tags/4.8.1/src/wp-
 admin/admin-header.php?marks=33,37,40#L32 a few lines above], what's the
 reason for escaping it twice?

--
Ticket URL: <https://core.trac.wordpress.org/ticket/41921#comment:2>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list