Make WordPress Core


Ignore:
Timestamp:
01/06/2022 06:11:57 PM (2 years ago)
Author:
desrosj
Message:

Grouped backports to the 5.2 branch.

  • Query: Improve sanitization within WP_Tax_Query.
  • Query: Improve sanitization within WP_Meta_Query.
  • Upgrade/Install: Avoid using unserialize() unnecessarily.
  • Formatting: Correctly encode ASCII characters in post slugs.

Merges [52454-52457] to the 5.2 branch.
Props vortfu, dd32, ehtis, zieladam, whyisjake, xknown, peterwilsoncc, desrosj, iandunn.

Location:
branches/5.2
Files:
2 edited

Legend:

Unmodified
Added
Removed
  • branches/5.2

  • branches/5.2/src/wp-admin/includes/upgrade.php

    r45030 r52471  
    15921592        while ( $rows = $wpdb->get_results( "SELECT option_name, option_value FROM $wpdb->options ORDER BY option_id LIMIT $start, 20" ) ) {
    15931593            foreach ( $rows as $row ) {
    1594                 $value = $row->option_value;
    1595                 if ( ! @unserialize( $value ) ) {
     1594                $value = maybe_unserialize( $row->option_value );
     1595                if ( $value === $row->option_value ) {
    15961596                    $value = stripslashes( $value );
    15971597                }
Note: See TracChangeset for help on using the changeset viewer.