From 6a163e199a236a6ddff18ceefc3931ee8b25a310 Mon Sep 17 00:00:00 2001 From: Sergey Biryukov Date: Thu, 17 Jun 2021 14:37:00 +0000 Subject: [PATCH] Administration: Consistently escape `admin_url()` links. Props chintan1896, mukesh27. Fixes #53426. Built from https://develop.svn.wordpress.org/trunk@51177 git-svn-id: http://core.svn.wordpress.org/trunk@50786 1a063a9b-81f0-0310-95a4-ce76da25c4cd --- wp-admin/about.php | 6 +++--- wp-admin/comment.php | 4 ++-- wp-admin/credits.php | 2 +- wp-admin/edit-tag-form.php | 2 +- wp-admin/freedoms.php | 2 +- wp-admin/includes/dashboard.php | 2 +- wp-admin/includes/image-edit.php | 3 ++- wp-admin/media-new.php | 2 +- wp-admin/nav-menus.php | 4 ++-- wp-admin/privacy.php | 2 +- wp-admin/themes.php | 2 +- wp-admin/upload.php | 4 ++-- wp-admin/users.php | 4 ++-- wp-includes/class-wp-embed.php | 3 +-- wp-includes/version.php | 2 +- 15 files changed, 22 insertions(+), 22 deletions(-) diff --git a/wp-admin/about.php b/wp-admin/about.php index 9eaf4fdc88..1cd366020b 100644 --- a/wp-admin/about.php +++ b/wp-admin/about.php @@ -23,7 +23,7 @@ require_once ABSPATH . 'wp-admin/admin-header.php';
- <?php _e( 'Code is Poetry' ); ?> + <?php _e( 'Code is Poetry' ); ?>
@@ -179,8 +179,8 @@ require_once ABSPATH . 'wp-admin/admin-header.php';
- - + +
diff --git a/wp-admin/comment.php b/wp-admin/comment.php index ad11f3e05b..a08e130525 100644 --- a/wp-admin/comment.php +++ b/wp-admin/comment.php @@ -232,7 +232,7 @@ switch ( $action ) { -

comment_ID}" ); ?>">

+

comment_ID}" ) ); ?>">

@@ -241,7 +241,7 @@ switch ( $action ) {

- +

diff --git a/wp-admin/credits.php b/wp-admin/credits.php index e08684331d..639113483f 100644 --- a/wp-admin/credits.php +++ b/wp-admin/credits.php @@ -22,7 +22,7 @@ $credits = wp_credits();
- <?php _e( 'Code is Poetry' ); ?> + <?php _e( 'Code is Poetry' ); ?>
diff --git a/wp-admin/edit-tag-form.php b/wp-admin/edit-tag-form.php index cb2249e2b0..3752b8f52c 100644 --- a/wp-admin/edit-tag-form.php +++ b/wp-admin/edit-tag-form.php @@ -300,7 +300,7 @@ do_action( "{$taxonomy}_edit_form", $tag, $taxonomy ); term_id ) ) : ?> - term_id", 'delete-tag_' . $tag->term_id ) ); ?>"> + term_id", 'delete-tag_' . $tag->term_id ) ) ); ?>"> diff --git a/wp-admin/freedoms.php b/wp-admin/freedoms.php index 21ca2e500a..dae9cc1b55 100644 --- a/wp-admin/freedoms.php +++ b/wp-admin/freedoms.php @@ -25,7 +25,7 @@ require_once ABSPATH . 'wp-admin/admin-header.php';
- <?php _e( 'Code is Poetry' ); ?> + <?php _e( 'Code is Poetry' ); ?>
diff --git a/wp-admin/includes/dashboard.php b/wp-admin/includes/dashboard.php index 178e45b2a1..4ba4b9edde 100644 --- a/wp-admin/includes/dashboard.php +++ b/wp-admin/includes/dashboard.php @@ -1996,7 +1996,7 @@ function wp_welcome_panel() {

- + true ) ) ) > 1 ) ) : ?>

diff --git a/wp-admin/includes/image-edit.php b/wp-admin/includes/image-edit.php index 52b403d180..95da5af3d5 100644 --- a/wp-admin/includes/image-edit.php +++ b/wp-admin/includes/image-edit.php @@ -90,7 +90,8 @@ function wp_image_editor( $post_id, $msg = false ) {

- +
diff --git a/wp-admin/media-new.php b/wp-admin/media-new.php index a4df447ceb..97426512a4 100644 --- a/wp-admin/media-new.php +++ b/wp-admin/media-new.php @@ -72,7 +72,7 @@ if ( get_user_setting( 'uploader' ) || isset( $_GET['browser-uploader'] ) ) {

-
+ diff --git a/wp-admin/nav-menus.php b/wp-admin/nav-menus.php index c9683ae299..950499fde1 100644 --- a/wp-admin/nav-menus.php +++ b/wp-admin/nav-menus.php @@ -689,7 +689,7 @@ require_once ABSPATH . 'wp-admin/admin-header.php';