WordPress.org

Make WordPress Core

Changes between Initial Version and Version 1 of Ticket #22400, comment 48


Ignore:
Timestamp:
05/13/2014 02:50:29 PM (7 years ago)
Author:
jmlapam
Comment:

Legend:

Unmodified
Added
Removed
Modified
  • Ticket #22400, comment 48

    initial v1  
    1 To my knowledge extract() take all params from array so it could be very bad to use it when datas come from user. The documentation says extract an take some additional args to avoid bad behavior e.g prefix.
     1To my knowledge extract() takes all params from array so it could be very bad to use it when datas come from user. The documentation says extract can take some additional args to avoid bad behavior e.g prefix.
    22
    33My question regards shortcodes. I use them all the time so do you recommand to remove extract from all our shortcode callbacks?