[wp-trac] [WordPress Trac] #57138: Sanitize attachment ID in media.php

WordPress Trac noreply at wordpress.org
Thu Nov 17 20:21:58 UTC 2022


#57138: Sanitize attachment ID in media.php
--------------------------+-----------------------------
 Reporter:  jaedm97       |      Owner:  (none)
     Type:  defect (bug)  |     Status:  new
 Priority:  normal        |  Milestone:  Awaiting Review
Component:  Media         |    Version:  trunk
 Severity:  normal        |   Keywords:
  Focuses:  privacy       |
--------------------------+-----------------------------
 On line [#59](https://github.com/WordPress/wordpress-
 develop/blob/trunk/src/wp-admin/media.php#L59) in the media.php the
 attachment ID is taking from `$_GET` super-global variable but is not
 sanitized.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/57138>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list