WordPress.org

Make WordPress Core

Changes between Initial Version and Version 1 of Ticket #17850, comment 29


Ignore:
Timestamp:
07/21/11 17:07:44 (4 years ago)
Author:
xknown
Comment:

Legend:

Unmodified
Added
Removed
Modified
  • Ticket #17850, comment 29

    initial v1  
    1 I think I miss the party :) 
     1I think I missed the party :) 
    22 
    33Currently this protection can be easily bypassed in two different ways using the ajax or xmlrpc api. I am able for example to add the {{{_wp_attached_file}}} meta to some post. I describe the steps to reproduce the problems using the ajax api.