Skip to:
Content

bbPress.org


Ignore:
Timestamp:
07/17/2013 07:35:03 PM (12 years ago)
Author:
johnjamesjacoby
Message:

For all template functions that output URL's, always echo an escaped value using esc_url(). See #2367.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/includes/search/template-tags.php

    r4952 r5037  
    247247 */
    248248function bbp_search_url() {
    249     echo bbp_get_search_url();
     249    echo esc_url( bbp_get_search_url() );
    250250}
    251251    /**
     
    285285 */
    286286function bbp_search_results_url() {
    287     echo bbp_get_search_results_url();
     287    echo esc_url( bbp_get_search_results_url() );
    288288}
    289289    /**
Note: See TracChangeset for help on using the changeset viewer.