WordPress.org

Make WordPress Core

Changeset 10467


Ignore:
Timestamp:
01/30/09 13:50:08 (7 years ago)
Author:
azaozz
Message:

Ensure get_the_title() is escaped in feed links, props Viper007Bond, fixes #8878

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/wp-includes/general-template.php

    r10411 r10467  
    14371437        $post = &get_post( $id = 0 ); 
    14381438        if ( comments_open() || pings_open() || $post->comment_count > 0 ) 
    1439             echo '<link rel="alternate" type="' . feed_content_type() . '" title="' . sprintf( $args['singletitle'], get_bloginfo('name'), $args['seperator'], get_the_title() ) . '" href="' . get_post_comments_feed_link( $post->ID ) . "\" />\n"; 
     1439            echo '<link rel="alternate" type="' . feed_content_type() . '" title="' . sprintf( $args['singletitle'], get_bloginfo('name'), $args['seperator'], wp_specialchars( get_the_title() ) ) . '" href="' . get_post_comments_feed_link( $post->ID ) . "\" />\n"; 
    14401440    } 
    14411441 
Note: See TracChangeset for help on using the changeset viewer.