Ticket #5251: 6259.diff
| File 6259.diff, 1.2 KB (added by stephdau, 6 years ago) |
|---|
-
plugins.php
103 103 <?php 104 104 $style = ''; 105 105 106 $plugins_allowedtags = array('a' => array('href' => array(),'title' => array()),'abbr' => array('title' => array()),'acronym' => array('title' => array()),'code' => array(),'em' => array(),'strong' => array()); 107 106 108 foreach($plugins as $plugin_file => $plugin_data) { 107 109 $style = ('class="alternate"' == $style|| 'class="alternate active"' == $style) ? '' : 'alternate'; 108 110 … … 114 116 $toggle = "<a href='" . wp_nonce_url("plugins.php?action=activate&plugin=$plugin_file", 'activate-plugin_' . $plugin_file) . "' title='".__('Activate this plugin')."' class='edit'>".__('Activate')."</a>"; 115 117 } 116 118 117 $plugins_allowedtags = array('a' => array('href' => array(),'title' => array()),'abbr' => array('title' => array()),'acronym' => array('title' => array()),'code' => array(),'em' => array(),'strong' => array());118 119 119 // Sanitize all displayed data 120 120 $plugin_data['Title'] = wp_kses($plugin_data['Title'], $plugins_allowedtags); 121 121 $plugin_data['Version'] = wp_kses($plugin_data['Version'], $plugins_allowedtags);
