[wp-trac] [WordPress Trac] #65051: $_REQUEST['term'] used unsanitized in user search query

WordPress Trac noreply at wordpress.org
Thu Apr 9 10:29:51 UTC 2026


#65051: $_REQUEST['term'] used unsanitized in user search query
--------------------------+-------------------------------------
 Reporter:  rajeshcp      |      Owner:  rajeshcp
     Type:  defect (bug)  |     Status:  assigned
 Priority:  normal        |  Milestone:  Awaiting Review
Component:  General       |    Version:  trunk
 Severity:  major         |   Keywords:  has-patch needs-testing
  Focuses:                |
--------------------------+-------------------------------------
 User-supplied search term is concatenated directly into the get_users()
 search argument without
   sanitize_text_field() or wp_unslash().

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/65051>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list