From 4db50ee64324bc5eb0f84c6f944f28b647d73f23 Mon Sep 17 00:00:00 2001 From: Andrew Nacin Date: Thu, 16 Dec 2010 10:04:21 +0000 Subject: [PATCH] The user description field should be esc_textarea when context is edit. see #15454. git-svn-id: https://develop.svn.wordpress.org/trunk@16995 602fd350-edb4-49c9-b593-d223f7449a82 --- wp-includes/user.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/wp-includes/user.php b/wp-includes/user.php index 2a28884562..c9e4cb483f 100644 --- a/wp-includes/user.php +++ b/wp-includes/user.php @@ -1211,7 +1211,7 @@ function sanitize_user_field($field, $value, $user_id, $context) { } if ( 'description' == $field ) - $value = esc_html($value); + $value = esc_textarea( $value ); else $value = esc_attr($value); } else if ( 'db' == $context ) {