WordPress.org

Make WordPress Core


Ignore:
Timestamp:
03/22/2017 11:03:28 PM (3 years ago)
Author:
westonruter
Message:

Customize: Prevent links to customize.php from being generated which have query vars from wp_removable_query_args() present.

Props dlh.
See #23367, #32692.
Fixes #31850.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/src/wp-admin/nav-menus.php

    r39543 r40313  
    585585            esc_url( add_query_arg( array(
    586586                array( 'autofocus' => $focus ),
    587                 'return' => urlencode( wp_unslash( $_SERVER['REQUEST_URI'] ) ),
     587                'return' => urlencode( remove_query_arg( wp_removable_query_args(), wp_unslash( $_SERVER['REQUEST_URI'] ) ) ),
    588588            ), admin_url( 'customize.php' ) ) ),
    589589            __( 'Manage with Live Preview' )
Note: See TracChangeset for help on using the changeset viewer.