Make WordPress Core

Ticket #24418: 24418.patch

File 24418.patch, 921 bytes (added by tollmanz, 13 years ago)
  • wp-includes/post-formats.php

    diff --git a/wp-includes/post-formats.php b/wp-includes/post-formats.php
    index 5a2c1f7..d2a3853 100644
    a b function get_the_post_format_quote( &$post = null ) { 
    747747        $meta = get_post_format_meta( $post->ID );
    748748
    749749        if ( ! empty( $meta['quote_source_name'] ) ) {
    750                 $source = ( empty( $meta['quote_source_url'] ) ) ? $meta['quote_source_name'] : sprintf( '<a href="%s">%s</a>', esc_url( $meta['quote_source_url'] ), $meta['quote_source_name'] );
     750                $source = ( empty( $meta['quote_source_url'] ) ) ? esc_html( $meta['quote_source_name'] ) : sprintf( '<a href="%s">%s</a>', esc_url( $meta['quote_source_url'] ), esc_html( $meta['quote_source_name'] ) );
    751751                $source = sprintf( apply_filters( 'quote_source_format', __( '&#8212;&#160;%s' ) ), $source );
    752752                $quote .= sprintf( '<figcaption class="quote-caption">%s</figcaption>', $source );
    753753        }