Aaron Campbell
bf3ac93baf
Add nonce for widget accessibility mode.
...
Props vortfu.
See #23328 .
Merges [39765] to 3.7 branch.
Built from https://develop.svn.wordpress.org/branches/3.7@39771
git-svn-id: http://core.svn.wordpress.org/branches/3.7@39709 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2017-01-11 01:54:09 +00:00
Joe McGill
b01225018a
Media: Improved media titles when created from filename.
...
Preserves spaces and generally creates more accurate, cleaner titles from filenames of uploaded media.
Merge of [38615] to the 3.7 branch.
Fixes #37989 .
Built from https://develop.svn.wordpress.org/branches/3.7@39719
git-svn-id: http://core.svn.wordpress.org/branches/3.7@39659 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2017-01-06 22:02:17 +00:00
Jeremy Felt
2d1b0ab4c6
Media: Sanitize upload filename.
...
Merge of [38538] to the 3.7 branch.
Built from https://develop.svn.wordpress.org/branches/3.7@38548
git-svn-id: http://core.svn.wordpress.org/branches/3.7@38491 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2016-09-07 14:01:10 +00:00
Pascal Birchler
b40b064e8a
Upgrade/Install: Sanitize file name in `File_Upload_Upgrader`.
...
Merge of [38524] to the 3.7 branch.
Built from https://develop.svn.wordpress.org/branches/3.7@38534
git-svn-id: http://core.svn.wordpress.org/branches/3.7@38475 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2016-09-06 18:07:12 +00:00
Nikolay Bachiyski
7fab797d2c
Admin: escape URL-encoded permalinks
...
Merge of [37801] to the 3.7 branch.
Built from https://develop.svn.wordpress.org/branches/3.7@37823
git-svn-id: http://core.svn.wordpress.org/branches/3.7@37788 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2016-06-21 15:00:10 +00:00
Rachel Baker
6319a5f7ea
Revisions: Change the capability needed to view revision diffs to `edit_post`.
...
Merge of [37779] to the 3.7 branch.
Built from https://develop.svn.wordpress.org/branches/3.7@37808
git-svn-id: http://core.svn.wordpress.org/branches/3.7@37773 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2016-06-21 14:51:37 +00:00
Boone Gorges
9aed168b89
Taxonomy: More specific cap check when processing category data on post save.
...
Ports [37691] to the 3.7 branch.
Props dlh.
Fixes #36379 .
Built from https://develop.svn.wordpress.org/branches/3.7@37788
git-svn-id: http://core.svn.wordpress.org/branches/3.7@37753 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2016-06-21 14:25:40 +00:00
Nikolay Bachiyski
f5195ba547
External Libraries: Disable Flash backend for Plupload
...
Built from https://develop.svn.wordpress.org/branches/3.7@37368
git-svn-id: http://core.svn.wordpress.org/branches/3.7@37334 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2016-05-06 17:36:10 +00:00
Dominik Schilling
79809190ac
XMLRPC: Don't allow private posts to be sticky.
...
Merge of [33325], [33612], and [34135] to the 3.7 branch.
See #20662 .
Built from https://develop.svn.wordpress.org/branches/3.7@34157
git-svn-id: http://core.svn.wordpress.org/branches/3.7@34125 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2015-09-14 23:03:17 +00:00
Nikolay Bachiyski
24a1b34acc
List tables: escape user e-mails
...
Merges [34133] for 3.7 branch
Built from https://develop.svn.wordpress.org/branches/3.7@34143
git-svn-id: http://core.svn.wordpress.org/branches/3.7@34111 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2015-09-14 22:45:19 +00:00
Dominik Schilling
54da7d4786
Heartbeat: Ensure post locks are released.
...
Merge of [33542] to the 3.7 branch.
Built from https://develop.svn.wordpress.org/branches/3.7@33548
git-svn-id: http://core.svn.wordpress.org/branches/3.7@33515 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2015-08-04 04:56:22 +00:00
Gary Pendergast
8a6a7d323e
Capabilities: When creating an auto-draft, ensure that the current user still has permission to do so.
...
Partial merge of [33357] to the 3.7 branch.
Built from https://develop.svn.wordpress.org/branches/3.7@33379
git-svn-id: http://core.svn.wordpress.org/branches/3.7@33350 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2015-07-23 04:27:09 +00:00
Michael Adams
2b1b2ebaf2
Upgrade: `$wpdb->get_col_length()` sanity check: bail on unexpected return value.
...
Merges [32429] for the 3.7 branch.
See #32165 .
Built from https://develop.svn.wordpress.org/branches/3.7@32435
git-svn-id: http://core.svn.wordpress.org/branches/3.7@32405 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2015-05-06 23:15:09 +00:00
Michael Adams
a021bbe537
Upgrade: Ensure unintelligible DB schemas don't result in content loss.
...
Merge of [32417] to the 3.7 branch.
See #32165 .
Props ocean90.
Built from https://develop.svn.wordpress.org/branches/3.7@32423
git-svn-id: http://core.svn.wordpress.org/branches/3.7@32393 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2015-05-06 21:53:34 +00:00
Aaron Jorbin
f702a97f8c
When upgrading WordPress remove genericons example.html files
...
[32385] for 3.7 branch
Props @dd32, @boonebgorges, @johnjamesjacoby, @drewapicture, @jorbin
Built from https://develop.svn.wordpress.org/branches/3.7@32411
git-svn-id: http://core.svn.wordpress.org/branches/3.7@32381 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2015-05-06 20:50:09 +00:00
Michael Adams
15a2afed1e
Upgrade: Fix typo in [32391]/3.7.
...
See #32165 .
Built from https://develop.svn.wordpress.org/branches/3.7@32395
git-svn-id: http://core.svn.wordpress.org/branches/3.7@32365 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2015-05-06 19:41:09 +00:00
Michael Adams
18fcca2916
WPDB: When checking that a string can be sent to MySQL, we shouldn't use `mb_convert_encoding()`, as it behaves differently to MySQL's character encoding conversion.
...
Merge of [32364] to the 3.7 branch.
Props mdawaffe, pento, nbachiyski, jorbin, johnjamesjacoby, jeremyfelt.
See #32165 .
Built from https://develop.svn.wordpress.org/branches/3.7@32391
git-svn-id: http://core.svn.wordpress.org/branches/3.7@32361 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2015-05-06 19:17:09 +00:00
Michael Adams
cd63ed5102
3.7:
...
- WPDB: Sanity check that any strings being stored in the DB are not too long to store correctly.
- When upgrading, remove any suspicious comments.
Built from https://develop.svn.wordpress.org/branches/3.7@32318
git-svn-id: http://core.svn.wordpress.org/branches/3.7@32289 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2015-04-27 18:35:09 +00:00
Gary Pendergast
f51aa3949c
Ensure post titles are correctly escaped on the Dashboard. Merge of [32175] to the 3.7 branch.
...
Props helen, ocean90, dd32, pento.
Built from https://develop.svn.wordpress.org/branches/3.7@32206
git-svn-id: http://core.svn.wordpress.org/branches/3.7@32179 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2015-04-20 13:44:10 +00:00
Gary Pendergast
5236e251a3
Merge the query sanity checks from #21212 to the 3.7 branch.
...
Props pento, nacin, mdawaffe, DrewAPicture.
Built from https://develop.svn.wordpress.org/branches/3.7@32188
git-svn-id: http://core.svn.wordpress.org/branches/3.7@32161 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2015-04-20 11:52:10 +00:00
Andrew Nacin
1e3fb4d13c
Validate image data.
...
Merges [30458] to the 3.7 branch.
Built from https://develop.svn.wordpress.org/branches/3.7@30465
git-svn-id: http://core.svn.wordpress.org/branches/3.7@30456 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2014-11-20 16:00:09 +00:00
Andrew Nacin
7331bf3e98
Avoid stomping of bulk postdata inside the bulk_edit_posts() loop.
...
Merges [28113] to the 3.7 branch.
Reverts [27992] which did not fix it for authors and comment/ping status.
props dd32, DrewAPicture.
fixes #27792 .
Built from https://develop.svn.wordpress.org/branches/3.7@28115
git-svn-id: http://core.svn.wordpress.org/branches/3.7@27946 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2014-04-14 08:13:10 +00:00
Andrew Nacin
9c1b1dd073
Recover auto-drafts lost via Quick Draft.
...
Merges [28075] from the 3.8 to the 3.7 branch. See [28074].
fixes #27734 .
Built from https://develop.svn.wordpress.org/branches/3.7@28077
git-svn-id: http://core.svn.wordpress.org/branches/3.7@27908 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2014-04-11 17:29:10 +00:00
Andrew Nacin
1f7cf009b3
Ensure edit_post() promotes an auto-draft to draft. Fixes Quick Draft.
...
Merges [28073] from the 3.8 branch to the 3.7 branch.
props dd32.
see #27734 .
Built from https://develop.svn.wordpress.org/branches/3.7@28074
git-svn-id: http://core.svn.wordpress.org/branches/3.7@27905 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2014-04-11 04:38:11 +00:00
Andrew Nacin
e5ba4e75cb
Avoid stomping of bulk postdata inside the bulk_edit_posts() loop.
...
Merges [27990] to the 3.7 branch.
props kovshenin.
see [27964], see #27452 .
Built from https://develop.svn.wordpress.org/branches/3.7@27992
git-svn-id: http://core.svn.wordpress.org/branches/3.7@27822 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2014-04-07 19:36:21 +00:00
Andrew Nacin
c322ca97ad
Better checks for contributors when saving posts.
...
Merges [27976] from the 3.8 branch to the 3.7 branch.
props dd32, kovshenin, plocha.
fixes #27452 .
Built from https://develop.svn.wordpress.org/branches/3.7@27977
git-svn-id: http://core.svn.wordpress.org/branches/3.7@27807 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2014-04-06 22:17:10 +00:00
Andrew Nacin
d5744d72dc
Background Updates: Record plugin & theme update statistics like we do for core updates.
...
Pass plugin/theme update objects into the Background updater for consistency with core & translations.
Merges [27905] to the 3.7 branch.
props dd32.
fixes #27633 .
Built from https://develop.svn.wordpress.org/branches/3.7@27924
git-svn-id: http://core.svn.wordpress.org/branches/3.7@27754 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2014-04-03 04:03:09 +00:00
Andrew Nacin
8d9c69ffc4
Core Updates: Fix a case where options (db_version specifically) can end up with stale values in the cache after a update is performed.
...
Merges [26448] and [26734] from 3.8 to the 3.7 branch.
props dd32.
fixes #26173 .
Built from https://develop.svn.wordpress.org/branches/3.7@27885
git-svn-id: http://core.svn.wordpress.org/branches/3.7@27716 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2014-04-01 03:36:10 +00:00
Andrew Nacin
62f4a5b223
Updates: When a failed Background Update occurs, only show the failed update nag if the user hasn't yet updated if it was an early abort.
...
Merges [26186] from 3.8 to the 3.7 branch.
props SergeyBiryukov.
fixes #25887 .
Built from https://develop.svn.wordpress.org/branches/3.7@27884
git-svn-id: http://core.svn.wordpress.org/branches/3.7@27715 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2014-04-01 03:31:09 +00:00
Andrew Nacin
4aa0ca0aab
Core Upgrader success statistics: Pass the version of WordPress we're upgrading from, as well as the version being upgraded to.
...
Merges [26016] and [26017] from 3.8 to the 3.7 branch.
fixes #25772 .
Built from https://develop.svn.wordpress.org/branches/3.7@27883
git-svn-id: http://core.svn.wordpress.org/branches/3.7@27714 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2014-04-01 03:29:10 +00:00
Andrew Nacin
8930937bf0
When checking filesystem permissions for core updates, only check the permissions of the files which we need to alter.
...
Merges [26014] from 3.8 to the 3.7 branch.
fixes #25771 .
Built from https://develop.svn.wordpress.org/branches/3.7@27882
git-svn-id: http://core.svn.wordpress.org/branches/3.7@27713 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2014-04-01 03:09:10 +00:00
Andrew Nacin
fe261114bd
Background Updates: Fix a PHP fatal error which could be encountered on some systems when using FTP.
...
Merges [26148] from 3.8 to the 3.7 branch.
props dd32.
fixes #25817 .
Built from https://develop.svn.wordpress.org/branches/3.7@27881
git-svn-id: http://core.svn.wordpress.org/branches/3.7@27712 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2014-04-01 02:58:10 +00:00
Dion Hulse
bd4a5ae14a
Background Updates: Spread them over the hour. Props Pento. Merges r26149 to the 3.7 branch. Fixes #25833 for 3.7.
...
Built from https://develop.svn.wordpress.org/branches/3.7@26450
git-svn-id: http://core.svn.wordpress.org/branches/3.7@26348 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-11-28 02:35:11 +00:00
Andrew Nacin
7c591bacff
Use correct variable in WP_Automatic_Updater::send_email().
...
Merges [25977] to the 3.7 branch and adds an inline comment.
props pento.
see #25757 .
Built from https://develop.svn.wordpress.org/branches/3.7@25981
git-svn-id: http://core.svn.wordpress.org/branches/3.7@25920 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-29 17:15:10 +00:00
Andrew Nacin
4006a8aa0a
When an HTTPS request to api.wordpress.org fails, try an insecure HTTP request and issue a warning.
...
Certain versions of cURL appear to claim OpenSSL support but fail to work. We need to not trap users on older versions while we work this out, and instead fall back to an insecure request.
Merges [25956] to the 3.7 branch.
fixes #25716 for the 3.7 branch.
Built from https://develop.svn.wordpress.org/branches/3.7@25957
git-svn-id: http://core.svn.wordpress.org/branches/3.7@25916 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-27 21:10:09 +00:00
Andrew Nacin
01023d9bfa
Avoid a notice for an undefined $checksums variable when updating from pre-3.7 to post-3.7.
...
Merges [25915] to the 3.7 branch.
props GaryJ.
fixes #25689 .
Built from https://develop.svn.wordpress.org/branches/3.7@25916
git-svn-id: http://core.svn.wordpress.org/branches/3.7@25879 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-25 20:17:09 +00:00
Andrew Nacin
a49c3f07c8
Add editimage.min.js to $_old_files. see #24999 . for the 3.7 branch.
...
Built from https://develop.svn.wordpress.org/branches/3.7@25898
git-svn-id: http://core.svn.wordpress.org/branches/3.7@25810 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-24 19:29:10 +00:00
Andrew Nacin
36a4f54379
Confirm delete_site_option() exists before calling it during an update.
...
This function won't yet exist when updating from 2.7 [sic].
Merges [25893] to the 3.7 branch.
fixes #25682 .
Built from https://develop.svn.wordpress.org/branches/3.7@25894
git-svn-id: http://core.svn.wordpress.org/branches/3.7@25806 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-24 18:21:10 +00:00
Andrew Nacin
a8bda30209
Remove debug code from WP_Automatic_Updater::send_email().
...
Merges [25891] to the 3.7 branch.
props markmcwilliams for initial patch.
fixes #25678 .
Built from https://develop.svn.wordpress.org/branches/3.7@25892
git-svn-id: http://core.svn.wordpress.org/branches/3.7@25804 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-24 02:00:09 +00:00
Andrew Nacin
4152cb0b4b
Introduce a send_core_update_notification_email filter to control whether to send update notifications.
...
Merges [25882] to the 3.7 branch.
Currently, this is dependent on whether the automatic updater is enabled (generally). This is likely to be decoupled in a future release.
This refocuses the auto_core_update_send_email filter to specifically be for success/fail emails for auto updates, while the new filter is more general.
see #25603 .
Built from https://develop.svn.wordpress.org/branches/3.7@25885
git-svn-id: http://core.svn.wordpress.org/branches/3.7@25797 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-23 19:54:10 +00:00
Ryan Boren
85447a0bf3
Pinking shears
...
Built from https://develop.svn.wordpress.org/branches/3.7@25881
git-svn-id: http://core.svn.wordpress.org/branches/3.7@25793 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-23 14:40:10 +00:00
Andrew Nacin
a387c3bef9
Make some changes to the email templates to account for the fact that an auto update offer might not be to the latest version.
...
For example, 3.7.2 install is served a 3.7.3 update, but the current version is 3.8.1.
This commit also allows for core update notification emails to be sent even when we are unable to run an auto update due to filesystem configuration (VCS checkout or file permissions). But, since these emails go through WP_Automatic_Updater, they will not be sent if the updater is outright disabled.
fixes #25654 .
Built from https://develop.svn.wordpress.org/trunk@25873
git-svn-id: http://core.svn.wordpress.org/trunk@25785 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-22 21:19:09 +00:00
Andrew Nacin
58c18f0c32
Show the nag we show for a stuck .maintenance file when an auto update failed.
...
see #25654 .
Built from https://develop.svn.wordpress.org/trunk@25872
git-svn-id: http://core.svn.wordpress.org/trunk@25784 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-22 21:15:09 +00:00
Andrew Nacin
13dd29126a
"some files" instead of "certain files". Less stuffy.
...
props markjaquith.
see #25652 .
Built from https://develop.svn.wordpress.org/trunk@25871
git-svn-id: http://core.svn.wordpress.org/trunk@25783 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-22 18:41:10 +00:00
Andrew Nacin
fabf119cf3
New, better error message when we realize we won't be able to copy a file and continue with the update.
...
fixes #25652 .
Built from https://develop.svn.wordpress.org/trunk@25870
git-svn-id: http://core.svn.wordpress.org/trunk@25782 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-22 18:21:10 +00:00
Andrew Nacin
d5fdd66f9d
Only enforce disk free space checks when doing background updates.
...
see #25652 .
Built from https://develop.svn.wordpress.org/trunk@25869
git-svn-id: http://core.svn.wordpress.org/trunk@25781 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-22 18:18:09 +00:00
Andrew Nacin
74488bdcb0
Spell out duplicate hook locations.
...
props DrewAPicture.
fixes #25658 .
Built from https://develop.svn.wordpress.org/trunk@25868
git-svn-id: http://core.svn.wordpress.org/trunk@25780 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-22 17:22:11 +00:00
Andrew Nacin
a160441c81
Updates: Disable maintenance mode once we've finished copying files, to minimize disruption.
...
props dd32.
fixes #25655 .
Built from https://develop.svn.wordpress.org/trunk@25866
git-svn-id: http://core.svn.wordpress.org/trunk@25778 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-22 17:20:10 +00:00
Andrew Nacin
097c0fd0b6
Updates: Saner stats and rollback handling. WP.org now collects basic stats on non-auto updates as they have been hugely informative.
...
props dd32 for initial patch.
fixes #25657 .
Built from https://develop.svn.wordpress.org/trunk@25863
git-svn-id: http://core.svn.wordpress.org/trunk@25775 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-22 09:49:09 +00:00
Andrew Nacin
64bd5aa564
Move upgrader_process_complete for core to its proper place in Core_Upgrader.
...
This means it will be firing as a JS redirect is taking place if the update is from pre-3.4. Acceptable.
props dd32.
fixes #25659 .
Built from https://develop.svn.wordpress.org/trunk@25861
git-svn-id: http://core.svn.wordpress.org/trunk@25773 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2013-10-22 04:37:09 +00:00