diff options
author | donncha <donncha@7be80a69-a1ef-0310-a953-fb0f7c49ff36> | 2008-07-17 14:43:59 +0000 |
---|---|---|
committer | donncha <donncha@7be80a69-a1ef-0310-a953-fb0f7c49ff36> | 2008-07-17 14:43:59 +0000 |
commit | 49273e675bb2297508335c8c9d8a1c34ea37766d (patch) | |
tree | 4ad31ad035c8a9ca49d559c4cd852b17ee7a834f /wp-admin | |
parent | 88a4dedfdad6db651f8f63d93ab1170bd2074f5a (diff) | |
download | wordpress-mu-49273e675bb2297508335c8c9d8a1c34ea37766d.tar.gz wordpress-mu-49273e675bb2297508335c8c9d8a1c34ea37766d.tar.xz wordpress-mu-49273e675bb2297508335c8c9d8a1c34ea37766d.zip |
Use sanitize_* functions for addblog parameters. fixes 680
git-svn-id: http://svn.automattic.com/wordpress-mu/trunk@1383 7be80a69-a1ef-0310-a953-fb0f7c49ff36
Diffstat (limited to 'wp-admin')
-rw-r--r-- | wp-admin/wpmu-edit.php | 6 |
1 files changed, 3 insertions, 3 deletions
diff --git a/wp-admin/wpmu-edit.php b/wp-admin/wpmu-edit.php index c2ed714..3728da5 100644 --- a/wp-admin/wpmu-edit.php +++ b/wp-admin/wpmu-edit.php @@ -95,9 +95,9 @@ switch( $_GET['action'] ) { check_admin_referer('add-blog'); $blog = $_POST['blog']; - $domain = ereg_replace("[^A-Za-z0-9]", "", strtolower( wp_specialchars( $blog['domain'] ) ) ); - $email = wp_specialchars( $blog['email'] ); - $title = stripslashes( wp_specialchars( $blog['title'] ) ); + $domain = sanitize_user( str_replace( '/', '', $blog[ 'domain' ] ) ); + $email = sanitize_email( $blog[ 'email' ] ); + $title = sanitize_title( $blog[ 'title' ] ); if ( empty($domain) || empty($email)) wp_die( __('Missing blog address or email address.') ); |