From 98ead2d8bb2f43c4de46397c6230411ba94b7100 Mon Sep 17 00:00:00 2001 From: Jeremy Felt Date: Wed, 7 Sep 2016 13:59:54 +0000 Subject: [PATCH] Media: Sanitize upload filename. Merge of [38538] to the 4.1 branch. Built from https://develop.svn.wordpress.org/branches/4.1@38544 git-svn-id: http://core.svn.wordpress.org/branches/4.1@38487 1a063a9b-81f0-0310-95a4-ce76da25c4cd --- wp-admin/includes/media.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/wp-admin/includes/media.php b/wp-admin/includes/media.php index 7fa4dd8f05..f315c8c838 100644 --- a/wp-admin/includes/media.php +++ b/wp-admin/includes/media.php @@ -279,7 +279,7 @@ function media_handle_upload($file_id, $post_id, $post_data = array(), $override $url = $file['url']; $type = $file['type']; $file = $file['file']; - $title = $name; + $title = sanitize_title( $name ); $content = ''; if ( preg_match( '#^audio#', $type ) ) {