Make WordPress Core


Ignore:
Timestamp:
01/06/2022 06:09:54 PM (3 years ago)
Author:
desrosj
Message:

Grouped backports to the 5.4 branch.

  • Query: Improve sanitization within WP_Tax_Query.
  • Query: Improve sanitization within WP_Meta_Query.
  • Upgrade/Install: Avoid using unserialize() unnecessarily.
  • Formatting: Correctly encode ASCII characters in post slugs.

Merges [52454-52457] to the 5.4 branch.
Props vortfu, dd32, ehtis, zieladam, whyisjake, xknown, peterwilsoncc, desrosj, iandunn.

Location:
branches/5.4
Files:
2 edited

Legend:

Unmodified
Added
Removed
  • branches/5.4

  • branches/5.4/src/wp-admin/includes/upgrade.php

    r47280 r52469  
    16151615        while ( $rows = $wpdb->get_results( "SELECT option_name, option_value FROM $wpdb->options ORDER BY option_id LIMIT $start, 20" ) ) {
    16161616            foreach ( $rows as $row ) {
    1617                 $value = $row->option_value;
    1618                 if ( ! @unserialize( $value ) ) {
     1617                $value = maybe_unserialize( $row->option_value );
     1618                if ( $value === $row->option_value ) {
    16191619                    $value = stripslashes( $value );
    16201620                }
Note: See TracChangeset for help on using the changeset viewer.