Make WordPress Core


Ignore:
Timestamp:
01/25/2008 02:21:59 AM (17 years ago)
Author:
ryan
Message:

Unescape user data before sending to wpdb::update() and wpdb::insert(), which expect unescaped data.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/wp-includes/registration.php

    r6564 r6656  
    159159
    160160    $data = compact( 'user_pass', 'user_email', 'user_url', 'user_nicename', 'display_name', 'user_registered' );
     161    $data = stripslashes_deep( $data );
    161162
    162163    if ( $update ) {
Note: See TracChangeset for help on using the changeset viewer.