[wp-trac] [WordPress Trac] #43667: signup_nonce_check does not use wp_verify_nonce.

WordPress Trac noreply at wordpress.org
Fri Mar 30 14:20:34 UTC 2018


#43667: signup_nonce_check does not use wp_verify_nonce.
------------------------------------+------------------------------
 Reporter:  herregroen              |       Owner:
     Type:  defect (bug)            |      Status:  new
 Priority:  normal                  |   Milestone:  Awaiting Review
Component:  Login and Registration  |     Version:  trunk
 Severity:  normal                  |  Resolution:
 Keywords:                          |     Focuses:  multisite
------------------------------------+------------------------------

Comment (by herregroen):

 I've added a patch which uses the `wp_verify_nonce` function and expands
 the error message to include a link to the signup form. Clicking this link
 will make a new request which will generate a new nonce.

--
Ticket URL: <https://core.trac.wordpress.org/ticket/43667#comment:1>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list