[wp-trac] [WordPress Trac] #43010: Attribute Name Escape

WordPress Trac noreply at wordpress.org
Sat Jan 8 00:12:06 UTC 2022


#43010: Attribute Name Escape
-------------------------------------+------------------------------
 Reporter:  joe_bopper               |       Owner:  (none)
     Type:  enhancement              |      Status:  new
 Priority:  normal                   |   Milestone:  Awaiting Review
Component:  Formatting               |     Version:
 Severity:  normal                   |  Resolution:
 Keywords:  has-patch needs-testing  |     Focuses:
-------------------------------------+------------------------------

Comment (by sc0ttkclark):

 Should the pattern match be something more like: `[^a-zA-Z0-9\-_\[\]]+`

 This may be more comprehensive to only allow certain character ranges
 versus just replacing a few characters.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/43010#comment:9>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list