From 6fd01856c71020e57274f2bf7b518eb80e3983a6 Mon Sep 17 00:00:00 2001 From: Ryan Boren Date: Thu, 6 Jul 2006 00:28:37 +0000 Subject: [PATCH] wp_kses_no_null() redirect location for extra protection. git-svn-id: https://develop.svn.wordpress.org/trunk@3992 602fd350-edb4-49c9-b593-d223f7449a82 --- wp-includes/pluggable.php | 1 + 1 file changed, 1 insertion(+) diff --git a/wp-includes/pluggable.php b/wp-includes/pluggable.php index 103b5445c8..57eaecdd43 100644 --- a/wp-includes/pluggable.php +++ b/wp-includes/pluggable.php @@ -261,6 +261,7 @@ function wp_redirect($location) { global $is_IIS; $location = preg_replace('|[^a-z0-9-~+_.?#=&;,/:%]|i', '', $location); + $location = wp_kses_no_null($location); $strip = array('%0d', '%0a'); $location = str_replace($strip, '', $location);