Filter fields through kses upon display. Introduce sanitize_user_object() and sanitize_user_field(). see #10751

git-svn-id: https://develop.svn.wordpress.org/trunk@11929 602fd350-edb4-49c9-b593-d223f7449a82
This commit is contained in:
Ryan Boren
2009-09-14 13:57:48 +00:00
parent e4045df0ab
commit b7f82a38b5
9 changed files with 260 additions and 86 deletions

View File

@@ -385,14 +385,6 @@ foreach ( $wp_user_search->get_results() as $userid ) {
</form>
</div>
<?php
foreach ( array('user_login' => 'user_login', 'first_name' => 'user_firstname', 'last_name' => 'user_lastname', 'email' => 'user_email', 'url' => 'user_uri', 'role' => 'user_role') as $formpost => $var ) {
$var = 'new_' . $var;
$$var = isset($_REQUEST[$formpost]) ? esc_attr(stripslashes($_REQUEST[$formpost])) : '';
}
unset($name);
?>
<br class="clear" />
<?php
break;