Make WordPress Core


Ignore:
Timestamp:
09/19/2017 09:27:29 PM (8 years ago)
Author:
ocean90
Message:

Taxonomy/Users: Use correct escaping function for URLs.

Merge of [41522] to the 4.6 branch.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • branches/4.6/src/wp-admin/edit-tag-form.php

    r41419 r41525  
    7575    <p><strong><?php echo $message; ?></strong></p>
    7676    <?php if ( $wp_http_referer ) { ?>
    77     <p><a href="<?php echo esc_url( wp_validate_redirect( wp_sanitize_redirect( $wp_http_referer ), admin_url( 'term.php?taxonomy=' . $taxonomy ) ) ); ?>"><?php
     77    <p><a href="<?php echo esc_url( wp_validate_redirect( esc_url_raw( $wp_http_referer ), admin_url( 'term.php?taxonomy=' . $taxonomy ) ) ); ?>"><?php
    7878        /* translators: %s: taxonomy name */
    7979        printf( _x( '&larr; Back to %s', 'admin screen' ), $tax->labels->name );
    8080    ?></a></p>
    8181    <?php } else { ?>
    82     <p><a href="<?php echo esc_url( wp_get_referer() ); ?>"><?php
     82    <p><a href="<?php echo esc_url( wp_validate_redirect( esc_url_raw( wp_get_referer() ) ) ); ?>"><?php
    8383        /* translators: %s: taxonomy name */
    8484        printf( _x( '&larr; Back to %s', 'admin screen' ), $tax->labels->name );
Note: See TracChangeset for help on using the changeset viewer.