Logo
Explore Help
Register Sign In
HostForge-Systems/wordpress
Template
1
0
Fork 0
You've already forked wordpress
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
60ce43fb10e88912f00b7a08c2d17ef99d8096f6
wordpress/wp-includes/html-api
History
jonsurrell d4a1644618 HTML API: Prevent adding dangerous double-escape SCRIPT contents.
Prevent WP_Tag_Processor::set_modifiable_text() from allowing SCRIPT contents with "<script" like it does with "</script". Either of these sequences may affect the script element's close.

Developed in https://github.com/WordPress/wordpress-develop/pull/9560.

Props jonsurrell, westonruter, dmsnell.
See #63738.

Built from https://develop.svn.wordpress.org/trunk@60706


git-svn-id: http://core.svn.wordpress.org/trunk@60042 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2025-09-04 14:40:27 +00:00
..
class-wp-html-active-formatting-elements.php
…
class-wp-html-attribute-token.php
…
class-wp-html-decoder.php
…
class-wp-html-doctype-info.php
HTML API: Fix typo in indicated_compatibility_mode.
2025-08-19 15:08:31 +00:00
class-wp-html-open-elements.php
…
class-wp-html-processor-state.php
…
class-wp-html-processor.php
HTML API: Fix typo in indicated_compatibility_mode.
2025-08-19 15:08:31 +00:00
class-wp-html-span.php
…
class-wp-html-stack-event.php
…
class-wp-html-tag-processor.php
HTML API: Prevent adding dangerous double-escape SCRIPT contents.
2025-09-04 14:40:27 +00:00
class-wp-html-text-replacement.php
…
class-wp-html-token.php
…
class-wp-html-unsupported-exception.php
…
html5-named-character-references.php
…
Powered by Gitea Version: 1.25.5 Page: 1345ms Template: 73ms
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API