Plugin Directory

Changeset 3146461


Ignore:
Timestamp:
09/04/2024 01:03:46 PM (18 months ago)
Author:
beardev
Message:

v 5.6.4

Location:
joomsport-sports-league-results-management
Files:
365 added
4 edited

Legend:

Unmodified
Added
Removed
  • joomsport-sports-league-results-management/trunk/assets/js/common.js

    r3143746 r3146461  
    18151815            'action': 'create_tlslider',
    18161816            'wpjs_teamlogo': 'logosliderwp',
    1817             'seasonID': jQuery("#post_ID").val()
     1817            'seasonID': jQuery("#post_ID").val(),
     1818            'security': jslrmObj.jnonce
    18181819        };
    18191820
  • joomsport-sports-league-results-management/trunk/includes/joomsport-admin-install.php

    r3143746 r3146461  
    164164      global $post_type;
    165165      wp_enqueue_script( 'joomsport-common-js', plugins_url('../assets/js/common.js', __FILE__), array('jquery', 'jquery-ui-sortable') );
     166      wp_localize_script('joomsport-common-js', 'jslrmObj', array("jnonce" => wp_create_nonce("joomsportajaxnonce")));
     167
    166168      wp_enqueue_script( 'joomsport-jchosen-js', plugins_url('../assets/js/chosen.jquery.min.js', __FILE__),array('jquery') );
    167169      wp_enqueue_script( 'joomsport-jchosen-order-js', plugins_url('../assets/js/chosen.order.jquery.min.js', __FILE__),array('jquery') );
  • joomsport-sports-league-results-management/trunk/includes/posts/joomsport-post-season.php

    r3143746 r3146461  
    963963
    964964    public static function joomsport_create_tlslider(){
    965         if (isset($_REQUEST['wpjs_teamlogo']) && $_REQUEST["wpjs_teamlogo"] == 'logosliderwp') {
    966             require_once JOOMSPORT_PATH . 'includes' .DIRECTORY_SEPARATOR. 'joomsport-logosliderwp.php';
     965
     966        check_ajax_referer("joomsportajaxnonce", "security");
     967        $wpjs_teamlogo = filter_input(INPUT_POST, 'wpjs_teamlogo', FILTER_SANITIZE_SPECIAL_CHARS);
     968
     969        if ($wpjs_teamlogo == 'logosliderwp') {
     970            require_once JOOMSPORT_PATH . 'includes' . DIRECTORY_SEPARATOR . 'joomsport-logosliderwp.php';
    967971            $seasonID = intval($_REQUEST["seasonID"]);
    968             if($seasonID){
     972            if ($seasonID) {
    969973                $obj = new JoomsportLogosliderwp($seasonID);
    970974                $obj->addSlider();
     
    972976                $term = get_term_by('term_id', $obj->categoryID, 'logosliderwpcat');
    973977
    974                 if(isset($term->slug)){
    975                     echo '[logo-slider cat="'.esc_attr($term->slug).'"]';
    976                 }else{
     978                if (isset($term->slug)) {
     979                    echo '[logo-slider cat="' . esc_attr($term->slug) . '"]';
     980                } else {
    977981                    echo "Something wrong";
    978982                }
     
    983987
    984988        }
     989
    985990        wp_die();
    986991    }
  • joomsport-sports-league-results-management/trunk/readme.txt

    r3143746 r3146461  
    55Tested up to: 6.6
    66Requires PHP: 7.4
    7 Stable tag: 5.6.3
     7Stable tag: 5.6.4
    88License: GPLv3
    99License URI: https://www.gnu.org/licenses/gpl-3.0.en.html
     
    124124== Changelog ==
    125125
     126= 5.6.4=
     127
     128Changes and bugfixes:
     129* Vulnerability fix: Broken Access Control
     130
    126131= 5.6.3=
    127132
Note: See TracChangeset for help on using the changeset viewer.