Changeset 14446
- Timestamp:
- 05/01/2025 05:22:26 AM (8 months ago)
- File:
-
- 1 edited
Legend:
- Unmodified
- Added
- Removed
-
sites/trunk/common/includes/wporg-sso/wp-plugin.php
r14070 r14446 383 383 $get['redirect_to'] = $this->_get_safer_redirect_to(); 384 384 } 385 $this->_safe_redirect( add_query_arg( $get, $this->sso_host_url . '/wp-login.php' ), 301 );385 $this->_safe_redirect( add_query_arg( urlencode_deep( $get ), $this->sso_host_url . '/wp-login.php' ), 301 ); 386 386 return; 387 387 } else { … … 505 505 506 506 if ( ! empty( $redirect ) ) { 507 $lostpassword_url = add_query_arg( 'redirect_to', $redirect, $lostpassword_url );507 $lostpassword_url = add_query_arg( 'redirect_to', urlencode( $redirect ), $lostpassword_url ); 508 508 } 509 509 … … 705 705 $redirect_to = $this->sso_host_url . '/loggedout'; 706 706 if ( ! empty( $_REQUEST['redirect_to'] ) ) { 707 $requested_redirect_to = urldecode( wp_unslash( $_REQUEST['redirect_to'] ));707 $requested_redirect_to = wp_unslash( $_REQUEST['redirect_to'] ); 708 708 $redirect_to = add_query_arg( 'redirect_to', urlencode( $requested_redirect_to ), $redirect_to ); 709 709
Note: See TracChangeset
for help on using the changeset viewer.