[buddypress-trac] [BuddyPress] #2603: [patch] has-xprofile field values aren't sanitised in database

buddypress-trac at lists.automattic.com buddypress-trac at lists.automattic.com
Sat Aug 28 03:50:58 UTC 2010


#2603: [patch] has-xprofile field values aren't sanitised in database
----------------------+-----------------------------------------------------
 Reporter:  DJPaul    |       Owner:  DJPaul   
     Type:  defect    |      Status:  assigned 
 Priority:  blocker   |   Milestone:  1.2.6    
Component:  XProfile  |    Keywords:  has-patch
----------------------+-----------------------------------------------------

Comment(by johnjamesjacoby):

 Makes sense to use sanitize_text_field for this. The problem will still
 arise with textareas though. There are plenty of those in WP core to
 mirror how they are sanitized. With all of the fields in BP, it may be a
 good idea for 1.3 to have our own sanitization API for user facing fields.

-- 
Ticket URL: <http://trac.buddypress.org/ticket/2603#comment:12>
BuddyPress <http://buddypress.org/>
BuddyPress


More information about the buddypress-trac mailing list