[wp-trac] [WordPress Trac] #56145: unescaped 'home_url()' in 'wp-admin/themes.php' file in 'line 269'

WordPress Trac noreply at wordpress.org
Tue Jul 5 14:20:28 UTC 2022


#56145: unescaped 'home_url()' in 'wp-admin/themes.php' file in 'line 269'
-------------------------------------+-------------------------------------
 Reporter:  obayedmamur              |       Owner:  (none)
     Type:  defect (bug)             |      Status:  new
 Priority:  normal                   |   Milestone:  6.1
Component:  Administration           |     Version:
 Severity:  normal                   |  Resolution:
 Keywords:  has-patch changes-       |     Focuses:  administration,
  requested                          |  coding-standards
-------------------------------------+-------------------------------------
Changes (by desrosj):

 * keywords:  has-patch commit => has-patch changes-requested


Comment:

 @hurayraiit It looks like there is a second instance of `home_url()` not
 being wrapped with `esc_url()` that [attachment:"56145.patch"] fixes, but
 the one mentioned in the original ticket title is not corrected.

 Could you change both at the same time in one patch?

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/56145#comment:5>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list