Logo
Explore Help
Register Sign In
HostForge-Systems/wordpress
Template
1
0
Fork 0
You've already forked wordpress
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
69ced2eb1fc85ec5e106384b48c8015c77468402
wordpress/wp-includes/html-api
History
jonsurrell d4a1644618 HTML API: Prevent adding dangerous double-escape SCRIPT contents.
Prevent WP_Tag_Processor::set_modifiable_text() from allowing SCRIPT contents with "<script" like it does with "</script". Either of these sequences may affect the script element's close.

Developed in https://github.com/WordPress/wordpress-develop/pull/9560.

Props jonsurrell, westonruter, dmsnell.
See #63738.

Built from https://develop.svn.wordpress.org/trunk@60706


git-svn-id: http://core.svn.wordpress.org/trunk@60042 1a063a9b-81f0-0310-95a4-ce76da25c4cd
2025-09-04 14:40:27 +00:00
..
class-wp-html-active-formatting-elements.php
…
class-wp-html-attribute-token.php
…
class-wp-html-decoder.php
…
class-wp-html-doctype-info.php
HTML API: Fix typo in indicated_compatibility_mode.
2025-08-19 15:08:31 +00:00
class-wp-html-open-elements.php
…
class-wp-html-processor-state.php
…
class-wp-html-processor.php
HTML API: Fix typo in indicated_compatibility_mode.
2025-08-19 15:08:31 +00:00
class-wp-html-span.php
…
class-wp-html-stack-event.php
…
class-wp-html-tag-processor.php
HTML API: Prevent adding dangerous double-escape SCRIPT contents.
2025-09-04 14:40:27 +00:00
class-wp-html-text-replacement.php
…
class-wp-html-token.php
…
class-wp-html-unsupported-exception.php
…
html5-named-character-references.php
…
Powered by Gitea Version: 1.25.5 Page: 1224ms Template: 38ms
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API