Changeset 53455 for trunk/src/wp-admin/includes/ajax-actions.php
- Timestamp:
- 06/01/2022 06:12:25 PM (3 years ago)
- File:
-
- 1 edited
Legend:
- Unmodified
- Added
- Removed
-
trunk/src/wp-admin/includes/ajax-actions.php
r53337 r53455 432 432 $per_page = isset( $_POST['_per_page'] ) ? (int) $_POST['_per_page'] : 0; 433 433 $page = isset( $_POST['_page'] ) ? (int) $_POST['_page'] : 0; 434 $url = isset( $_POST['_url'] ) ? esc_url_raw( $_POST['_url'] ) : '';434 $url = isset( $_POST['_url'] ) ? sanitize_url( $_POST['_url'] ) : ''; 435 435 436 436 // JS didn't send us everything we need to know. Just die with success message. … … 3334 3334 } 3335 3335 3336 $src = esc_url_raw( $src );3336 $src = sanitize_url( $src ); 3337 3337 if ( ! $src ) { 3338 3338 wp_send_json_error();
Note: See TracChangeset
for help on using the changeset viewer.