Make WordPress Core


Ignore:
Timestamp:
06/24/2006 05:41:59 AM (20 years ago)
Author:
ryan
Message:

wp_get_referer() and friends from robmiller and markjaquith. fixes #2800

File:
1 edited

Legend:

Unmodified
Added
Removed
  • branches/2.0/wp-includes/pluggable-functions.php

    r3835 r3909  
    232232    global $pagenow;
    233233    $adminurl = strtolower(get_settings('siteurl')).'/wp-admin';
    234     $referer = strtolower($_SERVER['HTTP_REFERER']);
     234    $referer = strtolower(wp_get_referer());
    235235    if ( !wp_verify_nonce($_REQUEST['_wpnonce'], $action) &&
    236236        !(-1 == $action && strstr($referer, $adminurl)) ) {
Note: See TracChangeset for help on using the changeset viewer.