Changeset 10288
- Timestamp:
- 09/26/2020 01:46:31 AM (5 years ago)
- Location:
- sites/trunk/wordpress.org/public_html/wp-content/themes/pub/wporg-login
- Files:
-
- 2 edited
-
functions-registration.php (modified) (4 diffs)
-
register.php (modified) (1 diff)
Legend:
- Unmodified
- Added
- Removed
-
sites/trunk/wordpress.org/public_html/wp-content/themes/pub/wporg-login/functions-registration.php
r10029 r10288 49 49 function wporg_login_create_pending_user( $user_login, $user_email, $user_mailinglist = false ) { 50 50 global $wpdb, $wp_hasher; 51 52 // Remove any whitespace which might have accidentally been added. 53 $user_login = trim( $user_login ); 54 $user_email = trim( $user_email ); 51 55 52 56 // Allow for w.org plugins to block registrations based on spam checks, etc. … … 132 136 $body .= sprintf( __( 'Your username is: %s', 'wporg' ), $user_login ) . "\n"; 133 137 $body .= __( 'You can create a password at the following URL:', 'wporg' ) . "\n"; 134 $body .= home_url( "/register/create/{$user_login}/{$activation_key}/");138 $body .= home_url( '/register/create/' . urlencode( $user_login ) . '/' . urlencode( $activation_key ) . '/' ); 135 139 $body .= "\n\n"; 136 140 $body .= __( '-- The WordPress.org Team', 'wporg' ); … … 204 208 205 209 // Insert user, no password tho. 206 $user_login = $pending_user['user_login'];207 $user_email = $pending_user['user_email'];210 $user_login = trim( $pending_user['user_login'] ); 211 $user_email = trim( $pending_user['user_email'] ); 208 212 $user_mailinglist = !empty( $pending_user['meta']['user_mailinglist'] ) && $pending_user['meta']['user_mailinglist']; 209 213 … … 279 283 foreach ( $fields as $field ) { 280 284 if ( isset( $_POST['user_fields'][ $field ] ) ) { 281 $value = sanitize_text_field( wp_unslash( $_POST['user_fields'][ $field ]) );285 $value = trim( sanitize_text_field( wp_unslash( $_POST['user_fields'][ $field ] ) ) ); 282 286 if ( 'url' == $field ) { 283 287 if ( $pending_user ) { -
sites/trunk/wordpress.org/public_html/wp-content/themes/pub/wporg-login/register.php
r10206 r10288 6 6 */ 7 7 8 $user_login = isset( $_POST['user_login'] ) ? wp_unslash( $_POST['user_login']) : '';8 $user_login = isset( $_POST['user_login'] ) ? trim( wp_unslash( $_POST['user_login'] ) ) : ''; 9 9 if ( ! $user_login && !empty( WP_WPOrg_SSO::$matched_route_params['user'] ) ) { 10 $user_login = WP_WPOrg_SSO::$matched_route_params['user'];10 $user_login = trim( WP_WPOrg_SSO::$matched_route_params['user'] ); 11 11 } 12 $user_email = isset( $_POST['user_email'] ) ? wp_unslash( $_POST['user_email']) : '';12 $user_email = isset( $_POST['user_email'] ) ? trim( wp_unslash( $_POST['user_email'] ) ) : ''; 13 13 $user_mailinglist = isset( $_POST['user_mailinglist'] ) && 'true' == $_POST['user_mailinglist']; 14 14
Note: See TracChangeset
for help on using the changeset viewer.