Skip to:
Content

bbPress.org

Changeset 5711


Ignore:
Timestamp:
04/24/2015 04:02:49 PM (11 years ago)
Author:
johnjamesjacoby
Message:

Common: Use esc_url() in bbp_redirect_to_field() and late escape for clarity.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/src/includes/common/template.php

    r5698 r5711  
    12631263
    12641264    // Remove loggedout query arg if it's there
    1265     $redirect_to    = (string) esc_attr( remove_query_arg( 'loggedout', $redirect_to ) );
    1266     $redirect_field = '<input type="hidden" id="bbp_redirect_to" name="redirect_to" value="' . $redirect_to . '" />';
     1265    $redirect_to    = remove_query_arg( 'loggedout', $redirect_to );
     1266    $redirect_field = '<input type="hidden" id="bbp_redirect_to" name="redirect_to" value="' . esc_url( $redirect_to ) . '" />';
    12671267
    12681268    echo apply_filters( 'bbp_redirect_to_field', $redirect_field, $redirect_to );
Note: See TracChangeset for help on using the changeset viewer.