Changeset 3928 for trunk/wp-login.php
- Timestamp:
- 06/27/2006 05:38:56 AM (19 years ago)
- File:
-
- 1 edited
Legend:
- Unmodified
- Added
- Removed
-
trunk/wp-login.php
r3732 r3928 31 31 $redirect_to = 'wp-login.php'; 32 32 if ( isset($_REQUEST['redirect_to']) ) 33 $redirect_to = preg_replace('|[^a-z0-9-~+_.?#=&;,/:]|i', '', $_REQUEST['redirect_to']);33 $redirect_to = $_REQUEST['redirect_to']; 34 34 35 35 wp_redirect($redirect_to); … … 174 174 else 175 175 $redirect_to = $_REQUEST['redirect_to']; 176 $redirect_to = preg_replace('|[^a-z0-9-~+_.?#=&;,/:]|i', '', $redirect_to);177 176 178 177 if( $_POST ) { … … 241 240 <p class="submit"> 242 241 <input type="submit" name="submit" id="submit" value="<?php _e('Login'); ?> »" tabindex="4" /> 243 <input type="hidden" name="redirect_to" value="<?php echo $redirect_to; ?>" />242 <input type="hidden" name="redirect_to" value="<?php echo wp_specialchars($redirect_to); ?>" /> 244 243 </p> 245 244 </form>
Note: See TracChangeset
for help on using the changeset viewer.