Make WordPress Core


Ignore:
Timestamp:
02/06/2008 09:19:47 PM (18 years ago)
Author:
ryan
Message:

Remove cookie checking from check_ajax_referer(). Check nonces instead. Props mdawaffe. fixes #5782

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/wp-admin/admin-ajax.php

    r6726 r6739  
    468468    break;
    469469case 'autosave' : // The name of this action is hardcoded in edit_post()
    470     check_ajax_referer( $action );
     470    check_ajax_referer( 'autosave', 'autosavenonce' );
    471471    $_POST['post_content'] = $_POST['content'];
    472472    $_POST['post_excerpt'] = $_POST['excerpt'];
     
    500500break;
    501501case 'autosave-generate-nonces' :
    502     check_ajax_referer( $action );
     502    check_ajax_referer( 'autosave', 'autosavenonce' );
    503503    $ID = (int) $_POST['post_ID'];
    504504    if($_POST['post_type'] == 'post') {
Note: See TracChangeset for help on using the changeset viewer.