Make WordPress Core


Ignore:
Timestamp:
05/24/2011 03:29:12 PM (13 years ago)
Author:
ryan
Message:

Send X-Frame-Options: SAMEORIGIN for admin and login pages. see #12293

File:
1 edited

Legend:

Unmodified
Added
Removed
  • branches/3.1/wp-includes/default-filters.php

    r17466 r18013  
    219219add_action( 'login_head',          'wp_print_head_scripts',         9     );
    220220add_action( 'login_footer',        'wp_print_footer_scripts'              );
     221add_action( 'login_init',          'send_frame_options_header',     10, 0 );
    221222
    222223// Feed Generator Tags
     
    250251add_action( 'comment_form', 'wp_comment_form_unfiltered_html_nonce'        );
    251252add_action( 'wp_scheduled_delete',        'wp_scheduled_delete'            );
     253add_action( 'admin_init',                 'send_frame_options_header', 10, 0 );
    252254
    253255// Navigation menu actions
Note: See TracChangeset for help on using the changeset viewer.