WordPress.org

Make WordPress Core

Changeset 17122


Ignore:
Timestamp:
12/23/2010 04:20:36 PM (7 years ago)
Author:
ryan
Message:

nonce checks for ms themes. see #15969

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/wp-admin/network/themes.php

    r17121 r17122  
    3535    switch ( $action ) {
    3636        case 'enable':
     37            check_admin_referer('enable-theme_' . $_GET['theme']);
    3738            $allowed_themes[ $_GET['theme'] ] = true;
    3839            update_site_option( 'allowedthemes', $allowed_themes );
     
    4142            break;
    4243        case 'disable':
     44            check_admin_referer('disable-theme_' . $_GET['theme']);
    4345            unset( $allowed_themes[ $_GET['theme'] ] );
    4446            update_site_option( 'allowedthemes', $allowed_themes );
     
    4749            break;
    4850        case 'enable-selected':
     51            check_admin_referer('bulk-themes');
    4952            $themes = isset( $_POST['checked'] ) ? (array) $_POST['checked'] : array();
    5053            if ( empty($themes) ) {
     
    5760            break;
    5861        case 'disable-selected':
     62            check_admin_referer('bulk-themes');
    5963            $themes = isset( $_POST['checked'] ) ? (array) $_POST['checked'] : array();
    6064            if ( empty($themes) ) {
Note: See TracChangeset for help on using the changeset viewer.