[wp-trac] [WordPress Trac] #49289: Spam comments should not show html preview

WordPress Trac noreply at wordpress.org
Sat Jan 25 09:23:58 UTC 2020


#49289: Spam comments should not show html preview
-------------------------+-----------------------------
 Reporter:  casiepa      |      Owner:  (none)
     Type:  enhancement  |     Status:  new
 Priority:  normal       |  Milestone:  Awaiting Review
Component:  Comments     |    Version:  trunk
 Severity:  normal       |   Keywords:
  Focuses:               |
-------------------------+-----------------------------
 When hovering over a url to an HTML page in a comment that is in spam
 (/wp-admin/edit-comments.php?comment_status=spam), the HTML page is trying
 to be loaded.

 I'm not sure it's a good idea to provide extra hits to a page that is
 probably from a spammer.

 Proposal: block all <a> inside td.author and td.comment

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/49289>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list