From e6f4baa9b74e31cafa90461c246e7aafa6d2048f Mon Sep 17 00:00:00 2001 From: Dominik Schilling Date: Tue, 3 Apr 2018 16:07:07 +0000 Subject: [PATCH] Template: Make sure the version string is correctly escaped for use in attributes. Merge of [42893] to the 4.7 branch. Built from https://develop.svn.wordpress.org/branches/4.7@42919 git-svn-id: http://core.svn.wordpress.org/branches/4.7@42749 1a063a9b-81f0-0310-95a4-ce76da25c4cd --- wp-includes/general-template.php | 14 +++++++------- 1 file changed, 7 insertions(+), 7 deletions(-) diff --git a/wp-includes/general-template.php b/wp-includes/general-template.php index e667482199..4288f5b2b7 100644 --- a/wp-includes/general-template.php +++ b/wp-includes/general-template.php @@ -3658,25 +3658,25 @@ function get_the_generator( $type = '' ) { switch ( $type ) { case 'html': - $gen = ''; + $gen = ''; break; case 'xhtml': - $gen = ''; + $gen = ''; break; case 'atom': - $gen = 'WordPress'; + $gen = 'WordPress'; break; case 'rss2': - $gen = 'https://wordpress.org/?v=' . get_bloginfo_rss( 'version' ) . ''; + $gen = '' . esc_url_raw( 'https://wordpress.org/?v=' . get_bloginfo_rss( 'version' ) ) . ''; break; case 'rdf': - $gen = ''; + $gen = ''; break; case 'comment': - $gen = ''; + $gen = ''; break; case 'export': - $gen = ''; + $gen = ''; break; }