Plugin Directory

Changeset 2916717


Ignore:
Timestamp:
05/24/2023 09:18:36 AM (3 years ago)
Author:
printapp
Message:

removed url sanitation

Location:
printapp
Files:
2 edited
2 copied

Legend:

Unmodified
Added
Removed
  • printapp/tags/1.0.2/js/designTreeSelect.js

    r2916713 r2916717  
    245245            if (input && input.data) {
    246246                let list = `<div class="print_app_indent_list">`;
    247                 input.data.items.forEach(item=>{
     247                input.data.forEach(item=>{
    248248                    list += `<div class="item">
    249249                                <input type="radio" value="${item.id}__${item.title}" name="print_app_design"/>
  • printapp/tags/1.0.2/printapp.php

    r2887611 r2916717  
    170170    public function print_app_fetch_designs() {
    171171        $authKey = get_option('print_app_secret_key');
    172         $url = sanitize_url( print_app_RUNTIME_API_URL.'/designs'.( isset($_POST['path']) ? '/'.sanitize_url( $_POST['path'] ) : '' ) );
     172        $url =  print_app_RUNTIME_API_URL.'/designs'.( isset($_POST['path']) ? '/'.$_POST['path']  : '' ) ;
    173173        $response = wp_remote_get( $url , array('headers'=>array('Authorization' => $authKey) ) );
    174174        wp_die( wp_remote_retrieve_body($response) );
  • printapp/trunk/js/designTreeSelect.js

    r2916713 r2916717  
    245245            if (input && input.data) {
    246246                let list = `<div class="print_app_indent_list">`;
    247                 input.data.items.forEach(item=>{
     247                input.data.forEach(item=>{
    248248                    list += `<div class="item">
    249249                                <input type="radio" value="${item.id}__${item.title}" name="print_app_design"/>
  • printapp/trunk/printapp.php

    r2887611 r2916717  
    170170    public function print_app_fetch_designs() {
    171171        $authKey = get_option('print_app_secret_key');
    172         $url = sanitize_url( print_app_RUNTIME_API_URL.'/designs'.( isset($_POST['path']) ? '/'.sanitize_url( $_POST['path'] ) : '' ) );
     172        $url =  print_app_RUNTIME_API_URL.'/designs'.( isset($_POST['path']) ? '/'.$_POST['path']  : '' ) ;
    173173        $response = wp_remote_get( $url , array('headers'=>array('Authorization' => $authKey) ) );
    174174        wp_die( wp_remote_retrieve_body($response) );
Note: See TracChangeset for help on using the changeset viewer.