From c95616cb6317cbfe5d8d06e5899f40b729c6ba9c Mon Sep 17 00:00:00 2001 From: Sergey Biryukov Date: Fri, 6 Sep 2019 06:25:19 +0000 Subject: [PATCH] Upgrade/Install: Escape the `%` in `width="100%"` in a `printf()` call in `Plugin_Upgrader_Skin::after()`. Props afragen. Fixes #47989. git-svn-id: https://develop.svn.wordpress.org/trunk@46072 602fd350-edb4-49c9-b593-d223f7449a82 --- src/wp-admin/includes/class-plugin-upgrader-skin.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/wp-admin/includes/class-plugin-upgrader-skin.php b/src/wp-admin/includes/class-plugin-upgrader-skin.php index 5d06c7c2c6..f4a119b754 100644 --- a/src/wp-admin/includes/class-plugin-upgrader-skin.php +++ b/src/wp-admin/includes/class-plugin-upgrader-skin.php @@ -47,7 +47,7 @@ class Plugin_Upgrader_Skin extends WP_Upgrader_Skin { if ( ! empty( $this->plugin ) && ! is_wp_error( $this->result ) && $this->plugin_active ) { // Currently used only when JS is off for a single plugin update? printf( - '', + '', esc_attr__( 'Update progress' ), wp_nonce_url( 'update.php?action=activate-plugin&networkwide=' . $this->plugin_network_active . '&plugin=' . urlencode( $this->plugin ), 'activate-plugin_' . $this->plugin ) );