Make WordPress Core


Ignore:
Timestamp:
01/06/2022 06:10:29 PM (3 years ago)
Author:
desrosj
Message:

Grouped backports to the 5.3 branch.

  • Query: Improve sanitization within WP_Tax_Query.
  • Query: Improve sanitization within WP_Meta_Query.
  • Upgrade/Install: Avoid using unserialize() unnecessarily.
  • Formatting: Correctly encode ASCII characters in post slugs.

Merges [52454-52457] to the 5.3 branch.
Props vortfu, dd32, ehtis, zieladam, whyisjake, xknown, peterwilsoncc, desrosj, iandunn.

Location:
branches/5.3
Files:
2 edited

Legend:

Unmodified
Added
Removed
  • branches/5.3

  • branches/5.3/src/wp-admin/includes/upgrade.php

    r46290 r52470  
    15961596        while ( $rows = $wpdb->get_results( "SELECT option_name, option_value FROM $wpdb->options ORDER BY option_id LIMIT $start, 20" ) ) {
    15971597            foreach ( $rows as $row ) {
    1598                 $value = $row->option_value;
    1599                 if ( ! @unserialize( $value ) ) {
     1598                $value = maybe_unserialize( $row->option_value );
     1599                if ( $value === $row->option_value ) {
    16001600                    $value = stripslashes( $value );
    16011601                }
Note: See TracChangeset for help on using the changeset viewer.