Skip to:
Content

BuddyPress.org

Changeset 7889


Ignore:
Timestamp:
02/15/2014 05:55:14 PM (10 years ago)
Author:
djpaul
Message:

xProfile: correctly sanitise $_POST['field_ids'] when a user updates their profile.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/bp-xprofile/bp-xprofile-screens.php

    r7359 r7889  
    6868        // Explode the posted field IDs into an array so we know which
    6969        // fields have been submitted
    70         $posted_field_ids = explode( ',', $_POST['field_ids'] );
     70        $posted_field_ids = wp_parse_id_list( $_POST['field_ids'] );
    7171        $is_required      = array();
    7272
Note: See TracChangeset for help on using the changeset viewer.