diff --git a/wp-includes/pluggable.php b/wp-includes/pluggable.php index a560df001e..eb2d7bcc19 100644 --- a/wp-includes/pluggable.php +++ b/wp-includes/pluggable.php @@ -121,6 +121,8 @@ function get_userdatabylogin($user_login) { if ( $userdata ) return $userdata; + $user_login = $wpdb->escape($user_login); + if ( !$user = $wpdb->get_row("SELECT * FROM $wpdb->users WHERE user_login = '$user_login'") ) return false;