Changeset 23594 for trunk/wp-login.php
- Timestamp:
- 03/03/2013 09:11:40 PM (13 years ago)
- File:
-
- 1 edited
-
trunk/wp-login.php (modified) (4 diffs)
Legend:
- Unmodified
- Added
- Removed
-
trunk/wp-login.php
r23558 r23594 400 400 401 401 // 10 days 402 setcookie( 'wp-postpass_' . COOKIEHASH, $wp_hasher->HashPassword( stripslashes( $_POST['post_password'] ) ), time() + 10 * DAY_IN_SECONDS, COOKIEPATH );402 setcookie( 'wp-postpass_' . COOKIEHASH, $wp_hasher->HashPassword( wp_unslash( $_POST['post_password'] ) ), time() + 10 * DAY_IN_SECONDS, COOKIEPATH ); 403 403 404 404 wp_safe_redirect( wp_get_referer() ); … … 435 435 login_header(__('Lost Password'), '<p class="message">' . __('Please enter your username or email address. You will receive a link to create a new password via email.') . '</p>', $errors); 436 436 437 $user_login = isset($_POST['user_login']) ? stripslashes($_POST['user_login']) : '';437 $user_login = isset($_POST['user_login']) ? wp_unslash($_POST['user_login']) : ''; 438 438 439 439 ?> … … 551 551 <p> 552 552 <label for="user_login"><?php _e('Username') ?><br /> 553 <input type="text" name="user_login" id="user_login" class="input" value="<?php echo esc_attr( stripslashes($user_login)); ?>" size="20" /></label>553 <input type="text" name="user_login" id="user_login" class="input" value="<?php echo esc_attr(wp_unslash($user_login)); ?>" size="20" /></label> 554 554 </p> 555 555 <p> 556 556 <label for="user_email"><?php _e('E-mail') ?><br /> 557 <input type="text" name="user_email" id="user_email" class="input" value="<?php echo esc_attr( stripslashes($user_email)); ?>" size="25" /></label>557 <input type="text" name="user_email" id="user_email" class="input" value="<?php echo esc_attr(wp_unslash($user_email)); ?>" size="25" /></label> 558 558 </p> 559 559 <?php do_action('register_form'); ?> … … 671 671 672 672 if ( isset($_POST['log']) ) 673 $user_login = ( 'incorrect_password' == $errors->get_error_code() || 'empty_password' == $errors->get_error_code() ) ? esc_attr( stripslashes($_POST['log'])) : '';673 $user_login = ( 'incorrect_password' == $errors->get_error_code() || 'empty_password' == $errors->get_error_code() ) ? esc_attr(wp_unslash($_POST['log'])) : ''; 674 674 $rememberme = ! empty( $_POST['rememberme'] ); 675 675 ?>
Note: See TracChangeset
for help on using the changeset viewer.