Changeset 1888
- Timestamp:
- 12/30/2008 11:14:28 PM (17 years ago)
- Location:
- branches/0.9
- Files:
-
- 6 edited
-
bb-admin/class-install.php (modified) (1 diff)
-
bb-includes/functions.php (modified) (3 diffs)
-
bb-includes/pluggable.php (modified) (1 diff)
-
bb-includes/registration-functions.php (modified) (2 diffs)
-
bb-login.php (modified) (1 diff)
-
bb-reset-password.php (modified) (1 diff)
Legend:
- Unmodified
- Added
- Removed
-
branches/0.9/bb-admin/class-install.php
r1495 r1888 1317 1317 } 1318 1318 1319 $this->strings[3]['form_errors']['keymaster_user_login'][] = empty( $data['keymaster_user_login']['value']) ? 'empty' : false;1320 if ($data['keymaster_user_login']['value'] != sanitize_user( $data['keymaster_user_login']['value'])) {1319 $this->strings[3]['form_errors']['keymaster_user_login'][] = empty( $data['keymaster_user_login']['value'] ) ? 'empty' : false; 1320 if ($data['keymaster_user_login']['value'] != sanitize_user( $data['keymaster_user_login']['value'], true ) ) { 1321 1321 $this->strings[3]['form_errors']['keymaster_user_login'][] = 'userlogin'; 1322 1322 } 1323 $data['keymaster_user_login']['value'] = sanitize_user( $data['keymaster_user_login']['value']);1323 $data['keymaster_user_login']['value'] = sanitize_user( $data['keymaster_user_login']['value'], true ); 1324 1324 1325 1325 // bb_verify_email() needs this -
branches/0.9/bb-includes/functions.php
r1843 r1888 1175 1175 function bb_get_user_by_name( $name ) { 1176 1176 global $bbdb; 1177 $name = sanitize_user( $name );1177 $name = sanitize_user( $name, true ); 1178 1178 if ( $user_id = $bbdb->get_var( $bbdb->prepare( "SELECT ID FROM $bbdb->users WHERE user_login = %s", $name ) ) ) 1179 1179 return bb_get_user( $user_id ); … … 1184 1184 function bb_get_user_by_nicename( $nicename ) { 1185 1185 global $bbdb; 1186 $nicename = sanitize_user( $nicename );1186 $nicename = sanitize_user( $nicename, true ); 1187 1187 if ( $user_id = $bbdb->get_var( $bbdb->prepare( "SELECT ID FROM $bbdb->users WHERE user_nicename = %s", $nicename ) ) ) 1188 1188 return bb_get_user( $user_id ); … … 1193 1193 function bb_user_exists( $user ) { 1194 1194 global $bbdb; 1195 $user = sanitize_user( $user );1195 $user = sanitize_user( $user, true ); 1196 1196 return $bbdb->get_row( $bbdb->prepare( "SELECT * FROM $bbdb->users WHERE user_login = %s", $user )); 1197 1197 } -
branches/0.9/bb-includes/pluggable.php
r1581 r1888 16 16 function bb_check_login($user, $pass, $already_md5 = false) { 17 17 global $bbdb; 18 $user = sanitize_user( $user );18 $user = sanitize_user( $user, true ); 19 19 if ($user == '') { 20 20 return false; -
branches/0.9/bb-includes/registration-functions.php
r1419 r1888 37 37 global $bbdb; 38 38 39 $user_login = sanitize_user( $user_login );39 $user_login = sanitize_user( $user_login, true ); 40 40 41 41 if ( !$user = $bbdb->get_row( $bbdb->prepare( "SELECT * FROM $bbdb->users WHERE user_login = %s", $user_login ) ) ) … … 52 52 function bb_reset_password( $key ) { 53 53 global $bbdb; 54 $key = sanitize_user( $key );54 $key = sanitize_user( $key, true ); 55 55 if ( empty( $key ) ) 56 56 bb_die(__('Key not found.')); -
branches/0.9/bb-login.php
r1380 r1888 24 24 if ( !bb_is_user_logged_in() && !$user = bb_login( @$_POST['user_login'], @$_POST['password'], @$_POST['remember'] ) ) { 25 25 $user_exists = bb_user_exists( @$_POST['user_login'] ); 26 $user_login = attribute_escape( sanitize_user( @$_POST['user_login'] ) );26 $user_login = attribute_escape( sanitize_user( @$_POST['user_login'], true ) ); 27 27 $remember_checked = @$_POST['remember'] ? ' checked="checked"' : ''; 28 28 $re = $redirect_to = attribute_escape( $re ); -
branches/0.9/bb-reset-password.php
r1221 r1888 7 7 8 8 if ( $_POST ) : 9 $user_login = sanitize_user ( $_POST['user_login'] );9 $user_login = sanitize_user ( $_POST['user_login'], true ); 10 10 if ( empty( $user_login ) ) 11 11 exit;
Note: See TracChangeset
for help on using the changeset viewer.