Skip to:
Content

BuddyPress.org


Ignore:
Timestamp:
05/02/2024 12:43:50 PM (12 months ago)
Author:
imath
Message:

Use a more appropriate function to escape slugs

Props johndawson155

See #9143 (trunk)
Closes https://github.com/buddypress/buddypress/pull/277

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/src/bp-members/bp-members-template.php

    r13799 r13844  
    1919 */
    2020function bp_profile_slug() {
    21     echo esc_url( bp_get_profile_slug() );
     21    echo esc_attr( bp_get_profile_slug() );
    2222}
    2323    /**
     
    4646 */
    4747function bp_members_slug() {
    48     echo esc_url( bp_get_members_slug() );
     48    echo esc_attr( bp_get_members_slug() );
    4949}
    5050    /**
     
    7373 */
    7474function bp_members_root_slug() {
    75     echo esc_url( bp_get_members_root_slug() );
     75    echo esc_attr( bp_get_members_root_slug() );
    7676}
    7777    /**
     
    100100 */
    101101function bp_members_member_type_base() {
    102     echo esc_url( bp_get_members_member_type_base() );
     102    echo esc_attr( bp_get_members_member_type_base() );
    103103}
    104104    /**
     
    216216 */
    217217function bp_signup_slug() {
    218     echo esc_url( bp_get_signup_slug() );
     218    echo esc_attr( bp_get_signup_slug() );
    219219}
    220220    /**
     
    249249 */
    250250function bp_activate_slug() {
    251     echo esc_url( bp_get_activate_slug() );
     251    echo esc_attr( bp_get_activate_slug() );
    252252}
    253253    /**
     
    282282 */
    283283function bp_members_invitations_slug() {
    284     echo esc_url( bp_get_members_invitations_slug() );
     284    echo esc_attr( bp_get_members_invitations_slug() );
    285285}
    286286    /**
     
    27382738 */
    27392739function bp_signup_subdomain_base() {
    2740     echo esc_url( bp_signup_get_subdomain_base() );
     2740    echo esc_attr( bp_signup_get_subdomain_base() );
    27412741}
    27422742    /**
Note: See TracChangeset for help on using the changeset viewer.