Unescaped CDATA in [gallery] Output
|Reported by:||miqrogroove||Owned by:||azaozz|
This is easiest to describe by example. Follow the permalink...
... to a post that contains the phrase "Masculine & Feminine" in an attached image caption. The image appears twice: Once as a Full Size image, and once in the image gallery.
In the Full Size image, the "&" has been escaped to "&" in both the alt text string and the div CDATA.
In the gallery, the div CDATA are not escaped and the raw "&" appears. The alt text string is missing (#8732) but should also be escaped.
Change History (17)
- Keywords has-patch 2nd-opinion added; needs-patch removed
- Milestone changed from 2.7.2 to 2.8