[wp-trac] [WordPress Trac] #43010: Attribute Name Escape

WordPress Trac noreply at wordpress.org
Tue Jan 18 14:34:00 UTC 2022


#43010: Attribute Name Escape
-------------------------------------------------+-------------------------
 Reporter:  joe_bopper                           |       Owner:  (none)
     Type:  enhancement                          |      Status:  new
 Priority:  normal                               |   Milestone:  Awaiting
                                                 |  Review
Component:  Formatting                           |     Version:
 Severity:  normal                               |  Resolution:
 Keywords:  needs-testing needs-patch needs-     |     Focuses:
  unit-tests                                     |
-------------------------------------------------+-------------------------
Changes (by swissspidy):

 * keywords:  has-patch needs-testing => needs-testing needs-patch needs-
     unit-tests


Comment:

 Related: `wp_kses_one_attr` and `wp_kses_attr_check` also have some logic
 to sanitize (not escape) attribute names based on the KSES allowlist.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/43010#comment:10>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list