WordPress.org

Make WordPress Core

Changeset 24291


Ignore:
Timestamp:
05/18/13 22:56:21 (11 months ago)
Author:
azaozz
Message:

Fix Chrome disregarding autocomplete="off" for password fields. Add autocomplete="off" to forms where the users can choose new password. Fixes #24364.

Location:
trunk
Files:
3 edited

Legend:

Unmodified
Added
Removed
  • trunk/wp-admin/user-edit.php

    r24247 r24291  
    190190</h2> 
    191191 
    192 <form id="your-profile" action="<?php echo esc_url( self_admin_url( IS_PROFILE_PAGE ? 'profile.php' : 'user-edit.php' ) ); ?>" method="post"<?php do_action('user_edit_form_tag'); ?>> 
    193 <?php wp_nonce_field('update-user_' . $user_id) ?> 
     192<form id="your-profile" autocomplete="off" action="<?php echo esc_url( self_admin_url( IS_PROFILE_PAGE ? 'profile.php' : 'user-edit.php' ) ); ?>" method="post"<?php do_action('user_edit_form_tag'); ?>> 
     193<?php wp_nonce_field('update-user_' . $user_id); ?> 
    194194<?php if ( $wp_http_referer ) : ?> 
    195195    <input type="hidden" name="wp_http_referer" value="<?php echo esc_url($wp_http_referer); ?>" /> 
  • trunk/wp-admin/user-new.php

    r23950 r24291  
    300300?> 
    301301<p><?php _e('Create a brand new user and add it to this site.'); ?></p> 
    302 <form action="" method="post" name="createuser" id="createuser" class="validate"<?php do_action('user_new_form_tag');?>> 
     302<form action="" autocomplete="off" method="post" name="createuser" id="createuser" class="validate"<?php do_action('user_new_form_tag');?>> 
    303303<input name="action" type="hidden" value="createuser" /> 
    304304<?php wp_nonce_field( 'create-user', '_wpnonce_create-user' ) ?> 
  • trunk/wp-login.php

    r24208 r24291  
    504504 
    505505?> 
    506 <form name="resetpassform" id="resetpassform" action="<?php echo esc_url( site_url( 'wp-login.php?action=resetpass&key=' . urlencode( $_GET['key'] ) . '&login=' . urlencode( $_GET['login'] ), 'login_post' ) ); ?>" method="post"> 
     506<form name="resetpassform" id="resetpassform" autocomplete="off" action="<?php echo esc_url( site_url( 'wp-login.php?action=resetpass&key=' . urlencode( $_GET['key'] ) . '&login=' . urlencode( $_GET['login'] ), 'login_post' ) ); ?>" method="post"> 
    507507    <input type="hidden" id="user_login" value="<?php echo esc_attr( $_GET['login'] ); ?>" autocomplete="off" /> 
    508508 
Note: See TracChangeset for help on using the changeset viewer.