Make WordPress Core


Ignore:
Timestamp:
05/02/2006 10:36:06 PM (20 years ago)
Author:
ryan
Message:

Nonce from above. #2678

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/wp-admin/plugin-editor.php

    r3665 r3759  
    3535case 'update':
    3636
    37     check_admin_referer();
     37    check_admin_referer('edit-plugin' . $file);
    3838
    3939    if ( !current_user_can('edit_plugins') )
     
    9898    <?php   if (!$error) { ?>
    9999  <form name="template" id="template" action="plugin-editor.php" method="post">
     100  <?php wp_nonce_field('edit-plugin' . $file) ?>
    100101         <div><textarea cols="70" rows="25" name="newcontent" id="newcontent" tabindex="1"><?php echo $content ?></textarea>
    101102     <input type="hidden" name="action" value="update" />
Note: See TracChangeset for help on using the changeset viewer.