Opened 14 years ago
Closed 14 years ago
#15969 closed defect (bug) (fixed)
Audit nonces
Reported by: | ryan | Owned by: | |
---|---|---|---|
Milestone: | 3.1 | Priority: | normal |
Severity: | normal | Version: | |
Component: | Security | Keywords: | close |
Focuses: | Cc: |
Description
Audit for nonces, especially in network admin.
Attachments (3)
Change History (15)
#3
@
14 years ago
The nonce added in r17126 duplicates another check in that branch after the confirmation screen. Not sure which should go.
#5
@
14 years ago
site-themes.php and site-users.php need nonce checks. I checked the rest of the network admin.
#10
@
14 years ago
If someone else can do a sweep of the network admin (I already have), that'd be great.
Please also sweep network-specific pieces in plugins.php and related pages.
Note: See
TracTickets for help on using
tickets.
(In [17122]) nonce checks for ms themes. see #15969