[wp-trac] [WordPress Trac] #53869: Post type / Taxonomy Label Hardening: Prevent Raw HTML tags in output / Media Library eval of HTML entities in label

WordPress Trac noreply at wordpress.org
Tue Aug 3 21:52:38 UTC 2021


#53869: Post type / Taxonomy Label Hardening: Prevent Raw HTML tags in output /
Media Library eval of HTML entities in label
--------------------------+------------------------------
 Reporter:  sc0ttkclark   |       Owner:  (none)
     Type:  defect (bug)  |      Status:  new
 Priority:  normal        |   Milestone:  Awaiting Review
Component:  Security      |     Version:  5.8
 Severity:  normal        |  Resolution:
 Keywords:                |     Focuses:
--------------------------+------------------------------
Changes (by sc0ttkclark):

 * Attachment "xss-cpt-label-test.zip" added.

 POC plugin to test with (includes HTML, HTML entity, and double HTML
 entity tests

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/53869>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list