From ecf96562d668cfdc83ac59e15ab43a08f391b80e Mon Sep 17 00:00:00 2001 From: Peter Westwood Date: Tue, 23 Nov 2010 12:10:01 +0000 Subject: [PATCH] Add a nonce check on the confirm links in the Network Admin stage one. git-svn-id: https://develop.svn.wordpress.org/trunk@16547 602fd350-edb4-49c9-b593-d223f7449a82 --- wp-admin/network/edit.php | 1 + 1 file changed, 1 insertion(+) diff --git a/wp-admin/network/edit.php b/wp-admin/network/edit.php index 2633811ef2..7ecbb1f41e 100644 --- a/wp-admin/network/edit.php +++ b/wp-admin/network/edit.php @@ -311,6 +311,7 @@ switch ( $_GET['action'] ) { // Common case 'confirm': + check_admin_referer( 'confirm' ); if ( !headers_sent() ) { nocache_headers(); header( 'Content-Type: text/html; charset=utf-8' );