Plugin Directory

Changeset 1299345


Ignore:
Timestamp:
12/02/2015 10:15:31 PM (10 years ago)
Author:
Brendanw7
Message:

bug fixes

Location:
admin-pages/trunk
Files:
2 edited

Legend:

Unmodified
Added
Removed
  • admin-pages/trunk/bw-admin-pages.php

    r1298680 r1299345  
    8989            $bwadminpages_id = esc_sql($_POST['bwadminpages_edit_page_id']);
    9090            $bwadminpages_page_title = esc_sql($_POST['bwadminpages_page_title']);
    91             $bwadminpages_page_content = esc_sql($_POST['bwadminpages_page_content']);
     91            $bwadminpages_page_content = esc_sql(htmlspecialchars($_POST['bwadminpages_page_content']));
    9292            $bwadminpages_menu_position = esc_sql($_POST['bwadminpages_menu_position']);
    9393            $bwadminpages_menu_icon = esc_sql($_POST['bwadminpages_menu_icon']);
     
    117117       
    118118        if( $hidden_field == 'Y' ) {
    119             $bwadminpages_id = ecs_sql($_POST['bwadminpages_delete_page_id']);
     119            $bwadminpages_id = esc_sql($_POST['bwadminpages_delete_page_id']);
    120120           
    121121            $table_name = $wpdb->prefix . 'bwadminpages';
  • admin-pages/trunk/inc/add_pages.php

    r1298725 r1299345  
    2929                 }
    3030                 echo '<div class=\"wrap\">';
    31                  echo do_shortcode('".$page_content."');
     31                 echo do_shortcode('".htmlspecialchars_decode(nl2br($page_content))."');
    3232                 echo '</div>';
    3333                }"
Note: See TracChangeset for help on using the changeset viewer.