Ticket #13051: patch2.diff
| File patch2.diff, 1.1 KB (added by , 16 years ago) |
|---|
-
pluggable.php
904 904 // remove %0d and %0a from location 905 905 $strip = array('%0d', '%0a', '%0D', '%0A'); 906 906 $location = _deep_replace($strip, $location); 907 // convert any & to & 908 $location = str_replace(array('&', '#038;'), '&', $location); 907 909 return $location; 908 910 } 909 911 endif; -
functions.php
1868 1868 * @return string URL with nonce action added. 1869 1869 */ 1870 1870 function wp_nonce_url( $actionurl, $action = -1 ) { 1871 $actionurl = str_replace( '&', '&', $actionurl );1872 return esc_html( add_query_arg( '_wpnonce', wp_create_nonce( $action ), $actionurl) );1871 // $actionurl = str_replace( array('&', '&038;'), '&', $actionurl ); 1872 return esc_html( wp_sanitize_redirect( add_query_arg( '_wpnonce', wp_create_nonce( $action ), $actionurl ) ) ); 1873 1873 }