Make WordPress Core


Ignore:
Timestamp:
03/01/2013 04:28:40 PM (12 years ago)
Author:
ryan
Message:

Revert 23416, 23419, 23445 except for wp_reset_vars() changes. We are going a different direction with the slashing cleanup, so resetting to a clean slate. see #21767

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/wp-admin/upgrade.php

    r23416 r23554  
    7878switch ( $step ) :
    7979    case 0:
    80         $goback = wp_get_referer();
     80        $goback = stripslashes( wp_get_referer() );
    8181        $goback = esc_url_raw( $goback );
    8282        $goback = urlencode( $goback );
     
    9191        wp_upgrade();
    9292
    93             $backto = !empty($_GET['backto']) ? wp_unslash( urldecode( $_GET['backto'] ) ) : __get_option( 'home' ) . '/';
     93            $backto = !empty($_GET['backto']) ? stripslashes( urldecode( $_GET['backto'] ) ) : __get_option( 'home' ) . '/';
    9494            $backto = esc_url( $backto );
    9595            $backto = wp_validate_redirect($backto, __get_option( 'home' ) . '/');
Note: See TracChangeset for help on using the changeset viewer.