Make WordPress Core


Ignore:
Timestamp:
01/06/2022 06:09:14 PM (3 years ago)
Author:
desrosj
Message:

Grouped backports to the 5.5 branch.

  • Query: Improve sanitization within WP_Tax_Query.
  • Query: Improve sanitization within WP_Meta_Query.
  • Upgrade/Install: Avoid using unserialize() unnecessarily.
  • Formatting: Correctly encode ASCII characters in post slugs.

Merges [52454-52457] to the 5.5 branch.
Props vortfu, dd32, ehtis, zieladam, whyisjake, xknown, peterwilsoncc, desrosj, iandunn.

Location:
branches/5.5
Files:
2 edited

Legend:

Unmodified
Added
Removed
  • branches/5.5

  • branches/5.5/src/wp-admin/includes/upgrade.php

    r48869 r52468  
    16211621        while ( $rows = $wpdb->get_results( "SELECT option_name, option_value FROM $wpdb->options ORDER BY option_id LIMIT $start, 20" ) ) {
    16221622            foreach ( $rows as $row ) {
    1623                 $value = $row->option_value;
    1624                 if ( ! @unserialize( $value ) ) {
     1623                $value = maybe_unserialize( $row->option_value );
     1624                if ( $value === $row->option_value ) {
    16251625                    $value = stripslashes( $value );
    16261626                }
Note: See TracChangeset for help on using the changeset viewer.