[wp-trac] [WordPress Trac] #43021: Menu item titles allow arbitrary HTML and script tags
WordPress Trac
noreply at wordpress.org
Fri Jan 5 10:09:30 UTC 2018
#43021: Menu item titles allow arbitrary HTML and script tags
--------------------------+------------------------------
Reporter: foobuilder | Owner:
Type: defect (bug) | Status: closed
Priority: normal | Milestone: Awaiting Review
Component: Menus | Version: 4.9.1
Severity: normal | Resolution: invalid
Keywords: close | Focuses:
--------------------------+------------------------------
Changes (by danieltj):
* keywords: => close
* status: new => closed
* resolution: => invalid
Comment:
This is by design. On single sites, admins and editors have the capability
to post unfiltered HTML in various places within the WordPress dashboard
(including comment replies etc). In multi-sites, only super admins can
post unfiltered HTML. Here is a link to
[https://codex.wordpress.org/Roles_and_Capabilities#unfiltered_html the
Codex] about the capability.
--
Ticket URL: <https://core.trac.wordpress.org/ticket/43021#comment:1>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform
More information about the wp-trac
mailing list