[wp-trac] [WordPress Trac] #18319: inline reply removes images

WordPress Trac wp-trac at lists.automattic.com
Wed Aug 10 19:40:48 UTC 2011


#18319: inline reply removes images
--------------------------+--------------------
 Reporter:  hebbet        |       Owner:
     Type:  defect (bug)  |      Status:  new
 Priority:  normal        |   Milestone:  3.3
Component:  Comments      |     Version:  3.2.1
 Severity:  normal        |  Resolution:
 Keywords:  has-patch     |
--------------------------+--------------------
Changes (by nacin):

 * keywords:  needs-patch dev-feedback => has-patch


Comment:

 Patch attached.

 Yes, it would protect against CSRF. Ideally we're object-specific with our
 nonces where possible, but in this case, we can't do that efficiently, so
 this will work fine.

 Approved by westi and ryan.

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/18319#comment:6>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list