Make WordPress Core

Changes between Initial Version and Version 1 of Ticket #17850, comment 29


Ignore:
Timestamp:
07/21/2011 05:07:44 PM (13 years ago)
Author:
xknown
Comment:

Legend:

Unmodified
Added
Removed
Modified
  • Ticket #17850, comment 29

    initial v1  
    1 I think I miss the party :)
     1I think I missed the party :)
    22
    33Currently this protection can be easily bypassed in two different ways using the ajax or xmlrpc api. I am able for example to add the {{{_wp_attached_file}}} meta to some post. I describe the steps to reproduce the problems using the ajax api.