Make WordPress Core


Ignore:
Timestamp:
05/07/2007 03:56:53 PM (18 years ago)
Author:
ryan
Message:

Add nonces to importers

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/wp-admin/import/wordpress.php

    r5252 r5404  
    160160        echo '<ol id="authors">';
    161161        echo '<form action="?import=wordpress&amp;step=2&amp;id=' . $this->id . '" method="post">';
     162        wp_nonce_field('import-wordpress');
    162163        $j = -1;
    163164        foreach ($authors as $author) {
     
    364365                break;
    365366            case 1 :
     367                check_admin_referer('import-upload');
    366368                $this->select_authors();
    367369                break;
    368370            case 2:
     371                check_admin_referer('import-wordpress');
    369372                $this->import();
    370373                break;
Note: See TracChangeset for help on using the changeset viewer.