[wp-trac] [WordPress Trac] #55335: $user_login double escaped with incorrect/empty password in wp-login.php

WordPress Trac noreply at wordpress.org
Tue Mar 8 04:00:35 UTC 2022


#55335: $user_login double escaped with incorrect/empty password in wp-login.php
------------------------------------+------------------------------
 Reporter:  johnjamesjacoby         |       Owner:  (none)
     Type:  defect (bug)            |      Status:  new
 Priority:  normal                  |   Milestone:  Awaiting Review
Component:  Login and Registration  |     Version:
 Severity:  normal                  |  Resolution:
 Keywords:                          |     Focuses:
------------------------------------+------------------------------

Comment (by johnjamesjacoby):

 Relatedly, `'register'` action is double `wp_unslash()`ing `$user_email`
 and `$user_login`.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/55335#comment:1>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list