Skip to:
Content

BuddyPress.org


Ignore:
Timestamp:
02/13/2009 10:20:15 PM (17 years ago)
Author:
apeatling
Message:

Added missing nonce values to email link actions.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/bp-friends/bp-friends-notifications.php

    r1060 r1126  
    1111    $ud = get_userdata( $friend_id );
    1212   
    13     $all_requests_link = site_url() . '/' . MEMBERS_SLUG . '/' . $ud->user_login . '/friends/requests/';
    14     $approve_request_link = site_url() . '/' . MEMBERS_SLUG . '/' . $ud->user_login . '/friends/requests/accept/' . $friendship_id;
    15     $reject_request_link = site_url() . '/' . MEMBERS_SLUG . '/' . $ud->user_login . '/friends/requests/reject/' . $friendship_id;
    16     $settings_link = site_url() . '/' . MEMBERS_SLUG . '/' . $ud->user_login . '/settings/notifications';
    17        
     13    $all_requests_link = site_url( MEMBERS_SLUG . '/' . $ud->user_login . '/friends/requests/' );
     14    $approve_request_link = wp_nonce_url( site_url( MEMBERS_SLUG . '/' . $ud->user_login . '/friends/requests/accept/' . $friendship_id, 'friends_accept_friendship' ) );
     15    $reject_request_link = wp_nonce_url( site_url( MEMBERS_SLUG . '/' . $ud->user_login . '/friends/requests/reject/' . $friendship_id, 'friends_reject_friendship' ) );
     16    $settings_link = site_url( MEMBERS_SLUG . '/' . $ud->user_login . '/settings/notifications' );
     17
    1818    // Set up and send the message
    1919    $to = $ud->user_email;
Note: See TracChangeset for help on using the changeset viewer.