Cast to int after escaping. Props Joseph Scott.
git-svn-id: http://svn.automattic.com/wordpress/trunk@5173 1a063a9b-81f0-0310-95a4-ce76da25c4cd
This commit is contained in:
parent
923ba23e88
commit
ae7fa6c616
|
@ -360,7 +360,7 @@ class wp_xmlrpc_server extends IXR_Server {
|
||||||
function wp_editPage($args) {
|
function wp_editPage($args) {
|
||||||
// Items not escaped here will be escaped in editPost.
|
// Items not escaped here will be escaped in editPost.
|
||||||
$blog_id = (int) $args[0];
|
$blog_id = (int) $args[0];
|
||||||
$page_id = $this->escape((int) $args[1]);
|
$page_id = (int) $this->escape($args[1]);
|
||||||
$username = $this->escape($args[2]);
|
$username = $this->escape($args[2]);
|
||||||
$password = $this->escape($args[3]);
|
$password = $this->escape($args[3]);
|
||||||
$content = $args[4];
|
$content = $args[4];
|
||||||
|
|
Loading…
Reference in New Issue